A denial of service detector based on maximum likelihood detection and the random neural network


Oeke G., LOUKAS G.

COMPUTER JOURNAL, cilt.50, sa.6, ss.717-727, 2007 (SCI-Expanded) identifier identifier

  • Yayın Türü: Makale / Tam Makale
  • Cilt numarası: 50 Sayı: 6
  • Basım Tarihi: 2007
  • Doi Numarası: 10.1093/comjnl/bxm066
  • Dergi Adı: COMPUTER JOURNAL
  • Derginin Tarandığı İndeksler: Science Citation Index Expanded (SCI-EXPANDED), Scopus
  • Sayfa Sayıları: ss.717-727
  • İstanbul Teknik Üniversitesi Adresli: Hayır

Özet

Due to the simplicity of the concept and the availability of attack tools, launching a DoS attack relatively easy, while defending a network resource against it is disproportionately difficult. first step of a protection scheme against DoS must be the detection of its existence, ideally the destructive traffic build-up. In this paper we propose a DoS detection approach which the maximum likelihood criterion with the random neural network (RNN). Our method is on measuring various instantaneous and statistical variables describing the incoming traffic, acquiring a likelihood estimation and fusing the information gathered from the input features using likelihood averaging and different architectures of RNNs. We present compare seven variations of it and evaluate our experimental results obtained in a large testbed.