Title :
Denial-of-service attack-detection techniques
Author :
Carl, Glenn ; Kesidis, George ; Brooks, R.R. ; Rai, Suresh
Author_Institution :
Pennsylvania State Univ., University Park, PA, USA
Abstract :
Denial-of-service (DoS) detection techniques - such as activity profiling, change-point detection, and wavelet-based signal analysis - face the considerable challenge of discriminating network-based flooding attacks from sudden increases in legitimate activity or flash events. This survey of techniques and testing results provides insight into our ability to successfully identify DoS flooding attacks. Although each detector shows promise in limited testing, none completely solve the detection problem. Combining various approaches with experienced network operators most likely produce the best results.
Keywords :
Internet; security of data; telecommunication traffic; DoS flooding attack; change-point detection; denial-of-service detection technique; network-based flooding attack; wavelet-based signal analysis; Computer crime; Computer security; Event detection; Face detection; Floods; Frequency estimation; Internet; Power system security; Protocols; Testing; DoS; denial-of-service; flooding attacks;
Journal_Title :
Internet Computing, IEEE