Skip to main content

Part of the book series: Lecture Notes in Electrical Engineering ((LNEE,volume 150))

Abstract

A Distributed Denial-of-Service (DDoS) attack is a distributed, coordinated attack on the availability of services of a target system or network that is launched indirectly through many compromised computing systems. A low-rate DDoS attack is an intelligent attack that the attacker can send attack packets to the victim at a sufficiently low rate to elude current anomaly-based detection. An information metric can quantify the differences of network traffic with various probability distributions. In this paper, an anomaly-based approach using two new information metrics such as the generalized entropy metric and the information distance metric, to detect low-rate DDoS attacks by measuring the difference between legitimate traffic and attack traffic is proposed. DDoS attacks detection metric is combined with IP traceback algorithm to form an effective collaborative defense mechanism against DDoS attacks.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 169.00
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 219.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info
Hardcover Book
USD 219.99
Price excludes VAT (USA)
  • Durable hardcover edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

References

  1. Ashley C, Jaipal S, Wanlei Z (2009) Chaos theory based detection against network mimicking DDoS attacks. IEEE Commun Lett 13(9):717–719

    Google Scholar 

  2. Xiang Y, Li K, Zhou W (2011) Low-rate DDoS attacks detection and traceback by using new information metrics. IEEE Trans Inform Forensics Secur 6(2):426–437

    Google Scholar 

  3. Yu S, Zhou W, Doss R, Jia W (2011) Traceback of DDoS attacks using entropy variations. IEEE Trans Parallel Distribd Sys 22(3):412–425

    Google Scholar 

  4. Li K, Zhou W, Yu S (2009) Effective metric for detecting distributed denial-of- service attacks based on information divergence. IET Commun 3(12):1859–2860

    Google Scholar 

  5. Yu S, Zhou W, Doss R (2008) Information theory based detection against network behavior mimicking DDoS attack. IEEE Commun Lett 12:319−321

    Google Scholar 

  6. Sheng Z, Zhang Q, Pan X, Xuhui Z (2010) Detection of low-rate DDoS attack based on self-similarity. In; Proceeding International Workshop on Education Technology and Computer Science pp 333–336

    Google Scholar 

  7. Liu Y, Yin J, Cheng J, Zhang B (2010) detecting ddos attacks using conditional entropy. International conference on computer application and system modeling (ICCASM 2010)

    Google Scholar 

  8. Giseop N, Ilkyeun R (2009) An efficient and reliable DDoS attack detection using a fast entropy computation method. ISCIT

    Google Scholar 

  9. Lee W, Xiang D (2001) Information-Theoretic measures for anomaly detection. In: Proceeding IEEE Symposium Security and Privacy pp 130–143

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to P. C. Senthilmahesh .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2013 Springer Science+Business Media New York

About this paper

Cite this paper

Senthilmahesh, P.C., Hemalatha, S., Rodrigues, P., Shanthakumari, A. (2013). DDoS Attacks Defense System Using Information Metrics. In: Das, V. (eds) Proceedings of the Third International Conference on Trends in Information, Telecommunication and Computing. Lecture Notes in Electrical Engineering, vol 150. Springer, New York, NY. https://doi.org/10.1007/978-1-4614-3363-7_3

Download citation

  • DOI: https://doi.org/10.1007/978-1-4614-3363-7_3

  • Published:

  • Publisher Name: Springer, New York, NY

  • Print ISBN: 978-1-4614-3362-0

  • Online ISBN: 978-1-4614-3363-7

  • eBook Packages: EngineeringEngineering (R0)

Publish with us

Policies and ethics