• DocumentCode
    3080306
  • Title

    Forensic Analysis of DoS Attack Traffic in MANET

  • Author

    Guo, Yinghua ; Lee, Ivan

  • Author_Institution
    Sch. of Comput. & Inf. Sci., Univ. of South Australia, Adelaide, SA, Australia
  • fYear
    2010
  • fDate
    1-3 Sept. 2010
  • Firstpage
    293
  • Lastpage
    298
  • Abstract
    This paper investigates distributed denial of service attacks using non-address-spoofing flood (NASF) over mobile ad hoc networks (MANET). Detection features based on statistical analysis of IDS log files and flow rate information are proposed. Detection of NASF attack is evaluated using three metrics, including detection ratio, detection time and false detection rate. Thus, the proposed framework address important issues in forensic science to identify what and when does the attack occur. Different NASF attack patterns with different network throughput degradations are simulated and examined in this paper.
  • Keywords
    ad hoc networks; computer forensics; computer network security; mobile radio; telecommunication traffic; DoS attack traffic; IDS log file; MANET; NASF attack; distributed denial of service; forensic analysis; mobile ad hoc network; nonaddress spoofing; statistical analysis; Analytical models; Computer crime; Computers; Feature extraction; Forensics; Mobile ad hoc networks; DDoS attack; MANET; network forensics; traffic analysis;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Network and System Security (NSS), 2010 4th International Conference on
  • Conference_Location
    Melbourne, VIC
  • Print_ISBN
    978-1-4244-8484-3
  • Electronic_ISBN
    978-0-7695-4159-4
  • Type

    conf

  • DOI
    10.1109/NSS.2010.48
  • Filename
    5635503