Effect of DDoS Attacks on Traffic Features


Erhan D., ANARIM E., Karabulut Kurt G. Z., Kosar R.

21st Signal Processing and Communications Applications Conference (SIU), CYPRUS, 24 - 26 Nisan 2013 identifier identifier

  • Yayın Türü: Bildiri / Tam Metin Bildiri
  • Cilt numarası:
  • Doi Numarası: 10.1109/siu.2013.6531420
  • Basıldığı Ülke: CYPRUS
  • İstanbul Teknik Üniversitesi Adresli: Evet

Özet

Distributed denial of service attacks pose an immense threat to the internet. In this work the effect of TCP SYN flood attacks on traffic features are examined. Using traffic features and correlation coefficient matrix and anomaly vector obtained from these features; a network health function is calculated. Applying a threshold to network health function gives alarms that are used to detect beginning and end points of TCP SYN flood attacks. This method is tested using data obtained from experiments of DETER testbed.