期刊名称:International Journal of Innovative Research in Computer and Communication Engineering
印刷版ISSN:2320-9798
电子版ISSN:2320-9801
出版年度:2015
卷号:3
期号:4
DOI:10.15680/ijircce.2015.0304048
出版社:S&S Publications
摘要:Interconnected systems, such as Web servers, database servers, cloud computing servers etc., are nowunder threads from network attackers. As one of most common and aggressive means, Denial-of Service (DoS) attackscause serious impact on thesecomputing systems. In this paper, we present a DoS attack detection system that usesMultivariate Correlation Analysis (MCA) for accurate network traffic characterization by extracting the geometricalcorrelations between network traffic features. Our MCA-based DoS attack detection system employs the principle ofanomaly-based detection in attack recognition. This makes our solution capableof detecting known and unknown DoSattacks effectively by learning the patterns of legitimate network traffic only. Furthermore, a triangle-area-basedtechnique is proposed to enhance and to speed up the process of MCA. The effectiveness of our proposed detectionsystem is evaluated using KDD Cup 99 dataset, and the influences of both non normalized data and normalized data onthe performance of the proposed detection system are examined. The results show that our system outperforms twoother previously developed state-of-the-art approaches in terms of detection accuracy.
关键词:Denial of Services; Detecting Attack System; Multivariate Correlation Analysis; triangle Area Map;Generations.