4.6 Article

An Effective Mechanism to Mitigate Real-Time DDoS Attack

期刊

IEEE ACCESS
卷 8, 期 -, 页码 126215-126227

出版社

IEEE-INST ELECTRICAL ELECTRONICS ENGINEERS INC
DOI: 10.1109/ACCESS.2020.2995820

关键词

Computer crime; IP networks; Support vector machines; Real-time systems; Probabilistic logic; Internet; DDoS; network attacks; IP networks; security; dataset

资金

  1. Alan Turing Institute [EP/N510129/1]
  2. PETRAS National Centre of Excellence for IoT Systems Cybersecurity [EP/S035362/1]
  3. EPSRC [EP/R007195/1] Funding Source: UKRI

向作者/读者索取更多资源

Computer networks are subject to an unprecedented number and variety of attack, the majority of which are distributed denial of service (DDoS). The nature and mechanisms employed in these DDoS attacks continually change, creating a significant challenge for detection and management. To address this evolving nature of attacks, approaches are required that can effectively detect and mitigate emerging attacks. In this paper, we provide a mechanism that not only detects the presence of a DDoS attacks but also identifies the route of attack and commences a process of mitigation at the initial stage of identification. The proposed research involves an optimized SVM classification algorithm integrated with SNORT IPS to provide prevention mechanisms for the entire network when subject to DDoS attack. The proposed IPS method allows traffic identified as legitimate to pass through the network, whereas suspect traffic is flagged and has to go through an identification system. We present the algorithm with experimental results that show better performance than simple Snort IPS, Probabilistic Neural Network (PNN), Back Propagation (BP), Chi-square, and PSO-SVM in terms of accuracy, exposure and specificity. These results show that the average accuracy rate of our method is 97 percent.

作者

我是这篇论文的作者
点击您的名字以认领此论文并将其添加到您的个人资料中。

评论

主要评分

4.6
评分不足

次要评分

新颖性
-
重要性
-
科学严谨性
-
评价这篇论文

推荐

暂无数据
暂无数据