Distinguishing between FE and DDoS using Randomness Check

Threads posed by Distributed Denial of Service (DDoS) attacks are becoming more serious day by day. Accurately detecting DDoS becomes an important and necessary step in securing a computer network. However, Flash Event (FE), which is created by legitimate requests, shares very similar characteristic...

Full description

Saved in:
Bibliographic Details
Main Authors: PARK, Hyundo, LI, Peng, GAO, Debin, LEE, Heejo, DENG, Robert H.
Format: text
Language:English
Published: Institutional Knowledge at Singapore Management University 2008
Subjects:
Online Access:https://ink.library.smu.edu.sg/sis_research/429
https://ink.library.smu.edu.sg/context/sis_research/article/1428/viewcontent/Park2008_Chapter_DistinguishingBetweenFEAndDDoS_pv.pdf
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Singapore Management University
Language: English
id sg-smu-ink.sis_research-1428
record_format dspace
spelling sg-smu-ink.sis_research-14282022-02-18T01:57:25Z Distinguishing between FE and DDoS using Randomness Check PARK, Hyundo LI, Peng GAO, Debin LEE, Heejo DENG, Robert H. Threads posed by Distributed Denial of Service (DDoS) attacks are becoming more serious day by day. Accurately detecting DDoS becomes an important and necessary step in securing a computer network. However, Flash Event (FE), which is created by legitimate requests, shares very similar characteristics with DDoS in many aspects and makes it hard to be distinguished from DDoS attacks. In this paper, we propose a simple yet effective mechanism called FDD (FE and DDoS Distinguisher) to distinguish FE and DDoS. To the best of our knowledge, this is the first effective and practical mechanism that distinguishes FE and DDoS attacks. Our trace-driven evaluation shows that FDD distinguishes between FE and DDoS attacks accurately and efficiently by utilizing only memory of a very small size, making it possible to be implemented on high-speed networking devices. 2008-09-01T07:00:00Z text application/pdf https://ink.library.smu.edu.sg/sis_research/429 info:doi/10.1007/978-3-540-85886-7_9 https://ink.library.smu.edu.sg/context/sis_research/article/1428/viewcontent/Park2008_Chapter_DistinguishingBetweenFEAndDDoS_pv.pdf http://creativecommons.org/licenses/by-nc-nd/4.0/ Research Collection School Of Computing and Information Systems eng Institutional Knowledge at Singapore Management University Network Security Distributed Denial of Service Flash Event Randomness Check Information Security
institution Singapore Management University
building SMU Libraries
continent Asia
country Singapore
Singapore
content_provider SMU Libraries
collection InK@SMU
language English
topic Network Security
Distributed Denial of Service
Flash Event
Randomness Check
Information Security
spellingShingle Network Security
Distributed Denial of Service
Flash Event
Randomness Check
Information Security
PARK, Hyundo
LI, Peng
GAO, Debin
LEE, Heejo
DENG, Robert H.
Distinguishing between FE and DDoS using Randomness Check
description Threads posed by Distributed Denial of Service (DDoS) attacks are becoming more serious day by day. Accurately detecting DDoS becomes an important and necessary step in securing a computer network. However, Flash Event (FE), which is created by legitimate requests, shares very similar characteristics with DDoS in many aspects and makes it hard to be distinguished from DDoS attacks. In this paper, we propose a simple yet effective mechanism called FDD (FE and DDoS Distinguisher) to distinguish FE and DDoS. To the best of our knowledge, this is the first effective and practical mechanism that distinguishes FE and DDoS attacks. Our trace-driven evaluation shows that FDD distinguishes between FE and DDoS attacks accurately and efficiently by utilizing only memory of a very small size, making it possible to be implemented on high-speed networking devices.
format text
author PARK, Hyundo
LI, Peng
GAO, Debin
LEE, Heejo
DENG, Robert H.
author_facet PARK, Hyundo
LI, Peng
GAO, Debin
LEE, Heejo
DENG, Robert H.
author_sort PARK, Hyundo
title Distinguishing between FE and DDoS using Randomness Check
title_short Distinguishing between FE and DDoS using Randomness Check
title_full Distinguishing between FE and DDoS using Randomness Check
title_fullStr Distinguishing between FE and DDoS using Randomness Check
title_full_unstemmed Distinguishing between FE and DDoS using Randomness Check
title_sort distinguishing between fe and ddos using randomness check
publisher Institutional Knowledge at Singapore Management University
publishDate 2008
url https://ink.library.smu.edu.sg/sis_research/429
https://ink.library.smu.edu.sg/context/sis_research/article/1428/viewcontent/Park2008_Chapter_DistinguishingBetweenFEAndDDoS_pv.pdf
_version_ 1770570421036384256