Detecting DDoS Attacks by Analyzing Client Response Patterns
Author(s) -
Yuji Soejima,
Eric Y. Chen,
Hitoshi Fuji
Publication year - 2005
Publication title -
2005 symposium on applications and the internet workshops (saint 2005 workshops)
Language(s) - English
DOI - 10.1109/saintw.2005.56
Distributed Denial of Service (DDoS) attacks is becoming a serious threat on the Internet. Not only network professionals but also end users are now aware of the attacks. Most of these attacks simply flood a massive amount of packets towards a target. In this paper, we propose to detect DDoS attacks by analyzing client response patterns after the reply packets from the server are intentionally delayed. While legitimate clients would react to such delay by decreasing their sending rates, malicious clients would simply keep on flooding the server. The effectiveness of this proposal is evaluated using our prototype.
Accelerating Research
Robert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom
Address
John Eccles HouseRobert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom