Papers/Open API

Detecting DDoS Attacks Against Web Server via Lightweight TCM-KNN Alg

tomato13 2008. 9. 24. 11:37

Detecting DDoS Attacks Against Web Server via Lightweight TCM-KNN Algorithm


conferences.sigcomm.org/sigcomm/2008/papers/p497-li.pdf


.............

In this poster, we firstly put forward to an effective anomaly detection method based on TCM-KNN(Transductive Confidence Machines for K-Nearest Neighbors) algorithm to fulfill DDoS attacks detection task towards ensuring the QoS of web server.

..............

For each web transaction as mentioned, we also measure five parameters: 

(1) one-way delay,

(2) request/response delay,

(3) packet loss,

(4) overall transaction duration 

(5) packet variation (jitter)

Jointly, these parameters capture a variety of application QoS requirements.