Ensemble-based DDoS detection and mitigation model

  • Authors:
  • Sajal Bhatia;Desmond Schmidt;George Mohay

  • Affiliations:
  • Queensland University of Technology, Brisbane, Queensland, Australia;Queensland University of Technology, Brisbane, Queensland, Australia;Queensland University of Technology, Brisbane, Queensland, Australia

  • Venue:
  • Proceedings of the Fifth International Conference on Security of Information and Networks
  • Year:
  • 2012

Quantified Score

Hi-index 0.00

Visualization

Abstract

This work-in-progress paper presents an ensemble-based model for detecting and mitigating Distributed Denial-of-Service (DDoS) attacks, and its partial implementation. The model utilises network traffic analysis and MIB (Management Information Base) server load analysis features for detecting a wide range of network and application layer DDoS attacks and distinguishing them from Flash Events. The proposed model will be evaluated against realistic synthetic network traffic generated using a software-based traffic generator that we have developed as part of this research. In this paper, we summarise our previous work, highlight the current work being undertaken along with preliminary results obtained and outline the future directions of our work.