کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
449684 693690 2006 10 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
Application of anomaly detection algorithms for detecting SYN flooding attacks
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
پیش نمایش صفحه اول مقاله
Application of anomaly detection algorithms for detecting SYN flooding attacks
چکیده انگلیسی

We investigate statistical anomaly detection algorithms for detecting SYN flooding, which is the most common type of Denial of Service (DoS) attack. The two algorithms considered are an adaptive threshold algorithm and a particular application of the cumulative sum (CUSUM) algorithm for change point detection. The performance is investigated in terms of the detection probability, the false alarm ratio, and the detection delay, using workloads of real traffic traces. Particular emphasis is on investigating the tradeoffs among these metrics and how they are affected by the parameters of the algorithm and the characteristics of the attacks. Such an investigation can provide guidelines to effectively tune the parameters of the detection algorithm to achieve specific performance requirements in terms of the above metrics.

ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Computer Communications - Volume 29, Issue 9, 31 May 2006, Pages 1433–1442
نویسندگان
, ,