loading...
 This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
2007 The Third International Symposium on Information Assurance and Security
Early DoS Attack Detection using Smoothened Time-Series andWavelet Analysis
Manchester, United Kingdom
August 29-August 31
ISBN: 0-7695-2876-7
Pravin Shinde, CDAC, Mumbai, India
Srinivas Guntupalli, CDAC, Mumbai, India
Denial of Service(DoS) attacks are ubiquitous to computer networks. Flood based attacks are a common class of DoS attacks. DoS detection mechanisms that aim at detecting floods mainly look for sudden changes in the traffic and mark them anomalous. In this paper, we propose a method that considers the traffic in a network as a time-series and smoothens it using exponential moving average and analyzes the smoothened wave using energy distribution based on wavelet analysis. The parameters we used to represent the traffic are number of bytes received per unit time and the proportion between incoming and outgoing bytes. By analyzing the energy distribution in the wavelet form of a smoothened time-series, growth in the traffic, which is the result of a DoS attack can be detected very early. As the parameters we considered represent different properties of the network, the accuracy of the detection will be very high and with less false positives.
Citation:
Pravin Shinde, Srinivas Guntupalli, "Early DoS Attack Detection using Smoothened Time-Series andWavelet Analysis," ias, pp.215-220, 2007 The Third International Symposium on Information Assurance and Security, 2007
Usage of this product signifies your acceptance of the Terms of Use.