Title
A Proposed Dos Detection Scheme For Mitigating Dos Attack Using Data Mining Techniques
Abstract
A denial of service (DoS) attack in a computer network is an attack on the availability of computer resources to prevent users from having access to those resources over the network. Denial of service attacks can be costly, capable of reaching $100,000 per hour. Development of easily-accessible, simple DoS tools has increased the frequency and reduced the level of expertise needed to launch an attack. Though these attack tools have been available for years, there has been no proposed defense mechanism targeted specifically at them. Most defense mechanisms in literature are designed to defend attacks captured in datasets like the KDD Cup 99 dataset from 20 years ago and from tools no longer in use in modern attacks. In this paper, we capture and analyze traffic generated by some of these DoS attack tools using Wireshark Network Analyzer and propose a signature-based DoS detection mechanism based on SVM classifier to defend against attacks launched by these attack tools. Our proposed detection mechanism was tested with Snort IDS and compared with some already existing defense mechanisms in literature and had a high detection accuracy, low positive rate and fast detection time.
Year
DOI
Venue
2019
10.3390/computers8040085
COMPUTERS
Keywords
Field
DocType
denial of service, attack tool, defense, detection, signature-based
Computer resources,Denial-of-service attack,Computer science,Computer security,Svm classifier
Journal
Volume
Issue
ISSN
8
4
2073-431X
Citations 
PageRank 
References 
1
0.41
0
Authors
3
Name
Order
Citations
PageRank
Kotey Seth Djanie110.41
Tchao Eric Tutu210.41
Gadze James Dzisi310.41