• 文献检索
  • 文档翻译
  • 深度研究
  • 学术资讯
  • Suppr Zotero 插件Zotero 插件
  • 邀请有礼
  • 套餐&价格
  • 历史记录
应用&插件
Suppr Zotero 插件Zotero 插件浏览器插件Mac 客户端Windows 客户端微信小程序
定价
高级版会员购买积分包购买API积分包
服务
文献检索文档翻译深度研究API 文档MCP 服务
关于我们
关于 Suppr公司介绍联系我们用户协议隐私条款
关注我们

Suppr 超能文献

核心技术专利:CN118964589B侵权必究
粤ICP备2023148730 号-1Suppr @ 2026

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验

MFFLR-DDoS:一种基于软件定义网络中多粒度特征融合的加密LR-DDoS攻击检测方法。

MFFLR-DDoS: An encrypted LR-DDoS attack detection method based on multi-granularity feature fusions in SDN.

作者信息

Wang Jin, Wang Liping, Wang Ruiqing

机构信息

College of Computer Science & Technology, Zhejiang University of Technology, Hangzhou 310023, China.

School of Mathematics, Zhengzhou University of Aeronautics, Zhengzhou 450046, China.

出版信息

Math Biosci Eng. 2024 Feb 26;21(3):4187-4209. doi: 10.3934/mbe.2024185.

DOI:10.3934/mbe.2024185
PMID:38549324
Abstract

Low rate distributed denial of service attack (LR-DDoS) is a special type of distributed denial of service (DDoS) attack, which uses the vulnerability of HTTP protocol to send HTTP requests to applications or servers at a slow speed, resulting in long-term occupation of server threads and affecting the normal access of legitimate users. Since LR-DDoS attacks do not need to send flooding or a large number of HTTP requests, it is difficult for traditional intrusion detection methods to detect such attacks, especially when HTTP traffic is encrypted. To overcome the above problems, we proposed an encrypted LR-DDoS attack detection and mitigation method based on the multi-granularity feature fusion (MFFLR-DDoS) for software defined networking (SDN). This method analyzes the encrypted session flow from the time sequence of packets and the spatiality of session flow and uses different deep learning methods to extract features, to obtain more effective features for abnormal traffic detection. In addition, we used the advantages of SDN architecture to perform real-time defense against LR-DDoS attacks by the way of SDN controller issuing flow rules. The experimental results showed that the MFFLR-DDoS model had a higher detection rate than advanced methods, and could mitigate LR-DDoS attack traffic online and in real-time.

摘要

低速率分布式拒绝服务攻击(LR-DDoS)是分布式拒绝服务(DDoS)攻击的一种特殊类型,它利用HTTP协议的漏洞以低速向应用程序或服务器发送HTTP请求,导致服务器线程被长期占用,影响合法用户的正常访问。由于LR-DDoS攻击不需要发送洪水式或大量的HTTP请求,传统的入侵检测方法很难检测到此类攻击,尤其是在HTTP流量被加密的情况下。为了克服上述问题,我们针对软件定义网络(SDN)提出了一种基于多粒度特征融合的加密LR-DDoS攻击检测与缓解方法(MFFLR-DDoS)。该方法从数据包的时间序列和会话流的空间性分析加密的会话流,并使用不同的深度学习方法提取特征,以获得更有效的异常流量检测特征。此外,我们利用SDN架构的优势,通过SDN控制器发布流规则的方式对LR-DDoS攻击进行实时防御。实验结果表明,MFFLR-DDoS模型的检测率高于先进方法,并且能够在线实时缓解LR-DDoS攻击流量。

相似文献

1
MFFLR-DDoS: An encrypted LR-DDoS attack detection method based on multi-granularity feature fusions in SDN.MFFLR-DDoS:一种基于软件定义网络中多粒度特征融合的加密LR-DDoS攻击检测方法。
Math Biosci Eng. 2024 Feb 26;21(3):4187-4209. doi: 10.3934/mbe.2024185.
2
SDN-Defend: A Lightweight Online Attack Detection and Mitigation System for DDoS Attacks in SDN.SDN-Defend:一种用于软件定义网络中分布式拒绝服务攻击的轻量级在线攻击检测与缓解系统
Sensors (Basel). 2022 Oct 28;22(21):8287. doi: 10.3390/s22218287.
3
Adaptive Machine Learning Based Distributed Denial-of-Services Attacks Detection and Mitigation System for SDN-Enabled IoT.基于自适应机器学习的支持软件定义网络的物联网分布式拒绝服务攻击检测与缓解系统
Sensors (Basel). 2022 Mar 31;22(7):2697. doi: 10.3390/s22072697.
4
A Method of DDoS Attack Detection and Mitigation for the Comprehensive Coordinated Protection of SDN Controllers.一种用于软件定义网络(SDN)控制器综合协同保护的分布式拒绝服务(DDoS)攻击检测与缓解方法。
Entropy (Basel). 2023 Aug 14;25(8):1210. doi: 10.3390/e25081210.
5
Multi-Stage Learning Framework Using Convolutional Neural Network and Decision Tree-Based Classification for Detection of DDoS Pandemic Attacks in SDN-Based SCADA Systems.基于卷积神经网络和决策树分类的多阶段学习框架,用于检测基于软件定义网络的监控与数据采集系统中的分布式拒绝服务大规模攻击。
Sensors (Basel). 2024 Feb 5;24(3):1040. doi: 10.3390/s24031040.
6
Software-Defined-Networking-Based One-versus-Rest Strategy for Detecting and Mitigating Distributed Denial-of-Service Attacks in Smart Home Internet of Things Devices.基于软件定义网络的一对多策略,用于检测和缓解智能家居物联网设备中的分布式拒绝服务攻击
Sensors (Basel). 2024 Aug 3;24(15):5022. doi: 10.3390/s24155022.
7
Ensemble Learning Framework for DDoS Detection in SDN-Based SCADA Systems.基于软件定义网络(SDN)的监控与数据采集(SCADA)系统中分布式拒绝服务(DDoS)检测的集成学习框架
Sensors (Basel). 2023 Dec 27;24(1):155. doi: 10.3390/s24010155.
8
Detection and mitigation of DDoS attacks based on multi-dimensional characteristics in SDN.基于软件定义网络中多维度特征的分布式拒绝服务攻击检测与缓解
Sci Rep. 2024 Jul 16;14(1):16421. doi: 10.1038/s41598-024-66907-z.
9
HLD-DDoSDN: High and low-rates dataset-based DDoS attacks against SDN.HLD-DDoSDN:基于高低速率数据集的针对 SDN 的 DDoS 攻击。
PLoS One. 2024 Feb 8;19(2):e0297548. doi: 10.1371/journal.pone.0297548. eCollection 2024.
10
GLD-Net: Deep Learning to Detect DDoS Attack via Topological and Traffic Feature Fusion.GLD-Net:基于拓扑和流量特征融合的深度学习 DDoS 攻击检测
Comput Intell Neurosci. 2022 Aug 16;2022:4611331. doi: 10.1155/2022/4611331. eCollection 2022.