Ddos detection and traceback with decision tree and grey relational analysis

Yi Chi Wu, Huei Ru Tseng, Wuu Yang*, Rong Hong Jan

*此作品的通信作者

研究成果: Article同行評審

58 引文 斯高帕斯(Scopus)

摘要

In Distributed Denial-of-Service (DDoS) Attack, an attacker breaks into many innocent computers (called zombies). Then, the attacker sends a large number of packets from zombies to a server, to prevent the server from conducting normal business operations. We design a DDoS-detection system based on a decision-tree technique and, after detecting an attack, to trace back to the attacker's locations with a traffic-flow pattern-matching technique. Our system could detect DDoS attacks with the false positive ratio about 1.2-2.4%, false negative ratio about 2-10%, and find the attack paths in traceback with the false negative rate 8-12% and false positive rate 12-14%.

原文English
頁(從 - 到)121-136
頁數16
期刊International Journal of Ad Hoc and Ubiquitous Computing
7
發行號2
DOIs
出版狀態Published - 3月 2011

指紋

深入研究「Ddos detection and traceback with decision tree and grey relational analysis」主題。共同形成了獨特的指紋。

引用此