A novel threat assessment method for DDoS early warning using network vulnerability analysis

作者:Liu Qiang*; Yin Jian Ping; Cai Zhi Ping; Zhu Ming
来源:4th International Conference on Network and System Security, NSS 2010, 2010-09-01 to 2010-09-03.
DOI:10.1109/NSS.2010.52

摘要

Distributed Denial of Service (DDoS) attack is one of main threats to Internet security. Due to the spatio-temporal properties of the attack, it is possible to detect the attack at its early stage. In this paper, we propose a novel method of DDoS threat assessment based on network vulnerability analysis. Both the multi-phase character in the temporal dimension and the impacts in the spatial dimension are concerned in our method. We use three metrics to assess threat, namely the ratio of progress, botnet size, and bots distribution. Experimental results show that our method is sensitive to the changes of attack states, and is easy to be implemented in an early warning system because of its simplicity.

  • 出版日期2010

全文