Collaborative 'many to many' DDoS detection in cloud

Cloud computing provides a scalable and cost-effective environment for users to store and process data through the internet. However, it also causes distributed denial-of-service (DDoS) attacks. DDoS attacks risk systems outage and intend to disable the service to legitimate users. In this paper, du...

Full description

Saved in:
Bibliographic Details
Main Authors: MA, Siqi, David LO, XI, Ning
Format: text
Language:English
Published: Institutional Knowledge at Singapore Management University 2016
Subjects:
Online Access:https://ink.library.smu.edu.sg/sis_research/3611
https://doi.org/10.1504/IJAHUC.2016.079269
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Singapore Management University
Language: English
Description
Summary:Cloud computing provides a scalable and cost-effective environment for users to store and process data through the internet. However, it also causes distributed denial-of-service (DDoS) attacks. DDoS attacks risk systems outage and intend to disable the service to legitimate users. In this paper, due to the nature of its large-scale and coordinated attacks, we propose a collaborative prediction approach for detecting DDoS. Our approach provides a clean and direct solution to attack defense. The DDoS attacks follow certain patterns when employing a large number of compromised machines to request for service from the servers in the victim system. So we construct an attackerserver utility matrix by the number of packets and adopt matrix factorisation to detect potential attackers collaboratively.We derive the latent attacker vectors and latent server vectors to predict the unknown entries in the matrix. Experimental results on the NS-2 simulation networks demonstrate the superiority of our approach.