4.6 Article

Mathematical Approach as Qualitative Metrics of Distributed Denial of Service Attack Detection Mechanisms

Journal

IEEE ACCESS
Volume 9, Issue -, Pages 123012-123028

Publisher

IEEE-INST ELECTRICAL ELECTRONICS ENGINEERS INC
DOI: 10.1109/ACCESS.2021.3110586

Keywords

Denial-of-service attack; Measurement; Computer crime; Knowledge based systems; Entropy; Correlation; Licenses; DDoS attacks; networking security; qualitative metrics; quantitative metrics

Funding

  1. Ministry of Higher Education Malaysia through Fundamental Research Grant Scheme [FRGS/1/2019/ICT03/USM/02/3]

Ask authors/readers for more resources

The study analyzed existing DDoS attack detection mechanisms and found issues such as insufficient use of mathematical functions and inaccurate calculation of quantitative metrics. By proposing new qualitative metrics and measuring the relationship between quantitative and qualitative metrics, the study revealed the authenticity of detection accuracy and the manipulation of reported accuracy.
The distributed denial of service (DDoS) attack is one of the most destructive organized cyber-attacks against online services or computers on the network. Despite the existence of many mechanisms to detect DDoS attacks, the problem is still prevalent. This research dissected and analyzed twenty-two existing DDoS attack detection mechanisms, representing all types of DDoS attack defense approaches, to determine the reason for the persistent successful DDoS attacks. This research posits two hypotheses concerning this gap: First, a lack of mathematical function usage by the existing detection mechanisms. The few functions used are limited to logical, statistical, or probability functions, resulting in reduced detection effectiveness. Second, researchers unintentionally or inadvertently miscalculate the mechanisms' detection accuracy rate by partially using quantitative metrics. This research has three objectives; to propose a set of qualitative metrics based on mathematical functions, to measure the relationship between the quantitative and qualitative metrics in the DDoS attack detection mechanisms, and to prove the relationship between the genuineness of the existing mechanisms' detection accuracy, and full consideration of quantitative metrics and diversity of qualitative and metrics. The result revealed a correlation rate of 84.22 %, which reflects the correctness of the detection accuracy. Third, identifying the manipulation percentage of reported detection accuracy by employing the correlation rate complement. The result indicated that 15.78 % of the reviewed mechanisms had manipulated or inadvertently miscalculated the accuracy.

Authors

I am an author on this paper
Click your name to claim this paper and add it to your profile.

Reviews

Primary Rating

4.6
Not enough ratings

Secondary Ratings

Novelty
-
Significance
-
Scientific rigor
-
Rate this paper

Recommended

No Data Available
No Data Available