Abstract:
Distributed Denial-of-Service (DDoS) attacks are a great threat to the Internet. Enabling accurately detection of Distribute Denial-of-Service attacks is important becaus...Show MoreMetadata
Abstract:
Distributed Denial-of-Service (DDoS) attacks are a great threat to the Internet. Enabling accurately detection of Distribute Denial-of-Service attacks is important because it is the foundation of defense against the attacks. In this paper, we focus on the distribution difference of the packet size between normal traffic flows and attack traffic flows and propose an entropy-based detection measurement. The measurement can highlights the characteristics of attack traffic. The experimental results show that the proposed measurement can effectively and clearly distinguish attack flows from normal flows in both low and high packet rate.
Published in: 11th International Conference on Wireless Communications, Networking and Mobile Computing (WiCOM 2015)
Date of Conference: 21-23 September 2015
Date Added to IEEE Xplore: 07 April 2016
Electronic ISBN:978-1-78561-035-6