Autors: Bosale, K. S., Nenova, M. V., Iliev, G. L.
Title: The distributed denial of service attacks (DDoS) prevention mechanisms on application layer
Keywords: App-Ddos attacks , Http Get , Http Post , Slowloris , RUDY ,

Abstract: As DDOS attacks interrupt internet services, DDOS tools confirm the effectiveness of the current attack. DDOS attack and countermeasures continue to increase in number and complexity. In this paper, we explore the scope of the DDoS flooding attack problem and attempts to combat it. A contemporary escalation of application layer distributed denial of service attacks on the web services has quickly transferred the focus of the research community from conventional network based denial of service. As a result, new genres of attacks were explored like HTTP GET Flood, HTTP POST Flood, Slowloris, R-U-Dead-Yet (RUDY), DNS etc. Also after a brief introduction to DDOS attacks, we discuss the characteristics of newly proposed application layer distributed denial of service attacks and embellish their impact on modern web services.

References

    Issue

    13th International Conference on Advanced Technologies, Systems and Services in Telecommunications (TELSIKS), 2017, Serbia, IEEE, DOI 10.1109/TELSKS.2017.8246247

    Цитирания (Citation/s):
    1. Andre Mbundo Quingueni, Nattapong Kitsuwan, "Reduction of traffic between switches and IDS for prevention of DoS attack in SDN", Communications and Information Technologies (ISCIT) 2019 19th International Symposium on, pp. 277-281, 2019 - 2019 - в издания, индексирани в Scopus или Web of Science
    2. Yusuf Zakir, Khondker S. Hasan, Naomi S. Wiggins, Amlan Chatterjee, "Improving Data Security in Message Communication between ACT and Aircraft using Private Blockchain", Internet of Things: Systems Management and Security (IOTSMS) 2019 Sixth International Conference on, pp. 506-513, 2019. - 2019 - в издания, индексирани в Scopus или Web of Science
    3. Engr. Ali Ahmed, Huma Ali Ahmed, "A Proposed Model for Controlling Distributed Denial of Service Attack on Cloud Computing", Emerging Trends in Engineering Sciences and Technology (ICEEST) 2019 4th International Conference on, pp. 1-4, 2019 - 2019 - в издания, индексирани в Scopus или Web of Science
    4. Ganeshayya Ishwarayya Shidaganti, Amogh Shreedhar Inamdar, Sindhuja V. Rai, Anagha M. Rajeev, SCEF: A Model for Prevention of DDoS Attacks From the Cloud, International Journal of Cloud Applications and Computing (IJCAC) 10(3), DOI: 10.4018/IJCAC.2020070104, Pages: 14, 2020 - 2020 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    5. Zakir, Yusuf, Improving Aviation Data Communication and Storage Security using Blockchain Based Approach, Bachelor Thesis, University of Huston, https://hdl.handle.net/10657.1/2427, 2020 - 2020 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    6. E. A. Setyawan and F. Hidayat, "Web Services Security and Threats: A Systematic Literature Review," 2020 International Conference on ICT for Smart Society (ICISS), 2020, pp. 1-6, doi: 10.1109/ICISS50791.2020.9307569. - 2020 - в издания, индексирани в Scopus или Web of Science
    7. R. Sanjeetha, K. N. A. Shastry, H. R. Chetan and A. Kanavalli, "Mitigating HTTP GET FLOOD DDoS attack using an SDN controller," 2020 International Conference on Recent Trends on Electronics, Information, Communication & Technology (RTEICT), 2020, pp. 6-10, doi: 10.1109/RTEICT49044.2020.9315608. - 2020 - в издания, индексирани в Scopus или Web of Science
    8. Tahadray Jean Tsitaitse, Yongquan Cai and Shaldon Leparan Suntu, SECURE ROAMING AUTHENTICATION MECHANISM FOR WI-FI BASED NETWORKS, International Journal of Innovative Computing, Information and Control, Volume 14, Number 6, December 2018, ISSN 1349-4198, pp.2221-2243 - 2018 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    9. CHINNAIAH, Balarengadurai. Protection of DDoS Attacks at the Application Layer: HyperLogLog (HLL) Cardinality Estimation. In: Cognitive Informatics and Soft Computing. Springer, Singapore, 2021. p. 595-604. - 2021 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    10. KAURA, Pushpinder; JASWALB, Anil. Detecting and Preventing the Sybil Attack Using Sink Based Detection Mechanism in Wireless Sensor Networks. - 2019 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    11. FITRI, N. R., et al. Low interaction honeypot as the defense mechanism against Slowloris attack on the web server. In: IOP Conference Series: Materials Science and Engineering. IOP Publishing, 2020. p. 012037. - 2020 - в издания, индексирани в Scopus или Web of Science
    12. MSHANGI, Maduhu. Enhancing Security of Information Systems in Tanzania: the Case of Education Sector. 2020. PhD Thesis. The Open University of Tanzania. - 2020 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    13. TSITAITSE, Tahadray Jean; CAI, Yongquan; SUNTU, Shaldon Leparan. SECURE ROAMING AUTHENTICATION MECHANISM FOR WI-FI BASED NETWORKS. INTERNATIONAL JOURNAL OF INNOVATIVE COMPUTING INFORMATION AND CONTROL, 2018, 14.6: 2221-2243. - 2018 - в издания, индексирани в Scopus или Web of Science
    14. Quingueni, A. M., & Kitsuwan, N. (2019, September). Reduction of traffic between switches and IDS for prevention of DoS attack in SDN. In 2019 19th International Symposium on Communications and Information Technologies (ISCIT) (pp. 277-281). IEEE. - 2019 - в издания, индексирани в Scopus или Web of Science
    15. Kaur, M., Sagar, A., & Singh, B. (2019). A Proposed Approach to Detect Sybil Attack Using SBDM in Wireless Sensor Networks. International Journal on Future Revolution in Computer Science & Communication Engineering, 5(5), 06-09. - 2019 - в издания, индексирани в Scopus или Web of Science
    16. BALAREZO, Juan Fernando, et al. A survey on DoS/DDoS attacks mathematical modelling for traditional, SDN and virtual networks. Engineering Science and Technology, an International Journal, 2021 - 2021 - в издания, индексирани в Scopus или Web of Science
    17. Chen, H., Meng, C., & Chen, J. (2021). DDoS Attack Simulation and Machine Learning-Based Detection Approach in Internet of Things Experimental Environment. International Journal of Information Security and Privacy (IJISP), 15(3), 1-18 - 2021 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    18. DA FONSECA, Fabio Miguel Blasak; DE SOUZA, Tiago Fatturi. Auditing databases for security vulnerabilities. U.S. Patent No 10,938,849, 2021 - 2021 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    19. Radain, D., Almalki, S., Alsaadi, H., & Salama, S. (2021, March). A Review on Defense Mechanisms Against Distributed Denial of Service (DDoS) Attacks on Cloud Computing. In 2021 International Conference of Women in Data Science at Taif University (WiDSTaif) (pp. 1-6). IEEE. - 2021 - в издания, индексирани в Scopus или Web of Science
    20. Calvert, C. (2019). Data Collection Framework and Machine Learning Algorithms for the Analysis of Cyber Security Attacks (Doctoral dissertation, Florida Atlantic University). - 2019 - в издания, индексирани в Scopus или Web of Science
    21. Wang, X., Tu, S., Zhao, W., & Shi, C. (2021). A novel energy-based online sequential extreme learning machine to detect anomalies over real-time data streams. Neural Computing and Applications, 1-9. - 2021 - в издания, индексирани в Scopus или Web of Science
    22. Yudhana, A., Riadi, I., & Suharti, S. (2021). Distributed Denial of Service (DDoS) Analysis on Virtual Network and Real Network Traffic. JOURNAL OF INFORMATICS AND TELECOMMUNICATION ENGINEERING, 5(1), 112-121. - 2021 - в издания, индексирани в Scopus или Web of Science
    23. Toapanta, S. M. T., Tapia, D. T., & Gallegos, L. E. M. (2019, December). An approach of cyberattacks with the use of social networks and communication media for public organizations of the ecuador. In Proceedings of the 2019 2nd International Conference on Education Technology Management (pp. 67-72). - 2019 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    24. HALIM, Iman Hazwam Abd, et al. Reducing Honeypot Log Storage Capacity Consumption--Cron Job with Perl-Script Approach. arXiv preprint arXiv:1911.07633, 2019. - 2019 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    25. CALVERT, Chad, et al. Detecting slow http post dos attacks using netflow features. In: The thirty-second international FLAIRS conference. 2019. - 2019 - в издания, индексирани в Scopus или Web of Science
    26. Eriyanto Adhi Setyawan, Fadhil Hidayat, "Web Services Security and Threats: A Systematic Literature Review", ICT for Smart Society (ICISS) 2020 International Conference on, vol. CFP2013V-ART, pp. 1-6, 2020 - 2020 - в издания, индексирани в Scopus или Web of Science
    27. R. Lakshmana Kumar, Quoc-Viet Pham, Firoz Khan, Md. Jalil Piran, Kapal Dev, "Blockchain for securing aerial communications: Potentials solutions and research directions", Physical Communication, vol. 47, pp. 101390, Elsevier, 2021 - 2021 - в издания, индексирани в Scopus или Web of Science
    28. Keerthan Kumar T.G., Srikanth M.S., Sharma V., Anand Babu J. (2022) Performance Evaluation of Packet Injection and DOS Attack Controller Software (PDACS) Module. In: Ranganathan G., Fernando X., Shi F. (eds) Inventive Communication and Computational Technologies. Lecture Notes in Networks and Systems, vol 311. Springer, Singapore. https://doi.org/10.1007/978-981-16-5529-6_60 - 2022 - в издания, индексирани в Scopus или Web of Science
    29. Varre, D. N. M. R., & Bayana, J. (2022, May). A Secured Botnet Prevention Mechanism for HTTP Flooding Based DDoS Attack. In 2022 3rd International Conference for Emerging Technology (INCET) (pp. 1-5). IEEE. - 2022 - в издания, индексирани в Scopus или Web of Science
    30. Cao, T. (2022). Popularity-Aware Storage Systems for Big Data Applications. PhD thesis - 2022 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    31. Kakadiya, H., Popat, J., Singh, N. K., Tak, L., Majeed, M. A., Mudgal, S., & Mahajan, V. (2022). Analysis and Prevention of Denial of Service Attacks in Smart Grid Using IoT. In Sustainable Technology and Advanced Computing in Electrical Engineering (pp. 367-378). Springer, Singapore. - 2022 - в издания, индексирани в Scopus или Web of Science
    32. Tuyen, N. D., Quan, N. S., Linh, V. B., Vu, T. V., & Fujita, G. (2022). A Comprehensive Review of Cybersecurity in Inverter-based Smart Power System amid the Boom of Renewable Energy. IEEE Access. - 2022 - в издания, индексирани в Scopus или Web of Science
    33. Cheema, A., Tariq, M., Hafiz, A., Khan, M. M., Ahmad, F., & Anwar, M. (2022). Prevention Techniques against Distributed Denial of Service Attacks in Heterogeneous Networks: A Systematic Review. Security and Communication Networks, 2022. - 2022 - в издания, индексирани в Scopus или Web of Science
    34. Wang, X., Tu, S., Zhao, W., & Shi, C. (2022). A novel energy-based online sequential extreme learning machine to detect anomalies over real-time data streams. Neural Computing and Applications, 34(2), 823-831. - 2022 - в издания, индексирани в Scopus или Web of Science
    35. Hussain, T., Saeed, M. I., Khan, I. U., Aslam, N., & Aljameel, S. S. (2022). Implementation of a Clustering-Based LDDoS Detection Method. Electronics, 11(18), 2804. - 2022 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    36. L. M. Halman and M. J. F. Alenazi, "MCAD: A Machine Learning Based Cyberattacks Detector in Software-Defined Networking (SDN) for Healthcare Systems," in IEEE Access, vol. 11, pp. 37052-37067, 2023, doi: 10.1109/ACCESS.2023.3266826 - 2023 - в издания, индексирани в Scopus или Web of Science
    37. S. K. Hasan, Y. M. Zakir and S. R. Khondker, "Permissioned Blockchain-Based Techniques for Refining the Data Security in Commercial Aviation," 2023 Tenth International Conference on Software Defined Systems (SDS), San Antonio, TX, USA, 2023, pp. 81-88, doi: 10.1109/SDS59856.2023.10329218 - 2023 - в издания, индексирани в Scopus или Web of Science
    38. M. Goel, S. Singh, A. Garg and N. R. Roy, "Comparative Study of DDoS Attacks & Tools and Their Analysis," 2023 International Conference on IoT, Communication and Automation Technology (ICICAT), Gorakhpur, India, 2023, pp. 1-8, doi: 10.1109/ICICAT57735.2023.10263744 - 2023 - в издания, индексирани в Scopus или Web of Science
    39. Rekeraho, A., Cotfas, D.T., Cotfas, P.A. et al. Cybersecurity challenges in IoT-based smart renewable energy. Int. J. Inf. Secur. (2023). https://doi.org/10.1007/s10207-023-00732-9 - 2023 - в издания, индексирани в Scopus или Web of Science
    40. Tikhe, G.N., Patheja, P.S. (2023). Mitigation of Distributed Denial of Service (DDoS) Attack Using Network Function Virtualization (NFV)—A Survey. In: Rao, U.P., Alazab, M., Gohil, B.N., Chelliah, P.R. (eds) Security, Privacy and Data Analytics. ISPDA 2022. Lecture Notes in Electrical Engineering, vol 1049. Springer, Singapore. https://doi.org/10.1007/978-981-99-3569-7_22 - 2023 - в издания, индексирани в Scopus или Web of Science
    41. R. S. Prabhu, A. Prema and E. Perumal, "A Novel Cloud Security Enhancement Scheme to Defend against DDoS Attacks by using Deep Learning Strategy," 2022 6th International Conference on Electronics, Communication and Aerospace Technology, Coimbatore, India, 2022, pp. 698-704, doi: 10.1109/ICECA55336.2022.10009177. - 2022 - в издания, индексирани в Scopus или Web of Science
    42. J. Pacheco, M. Lopez and V. Benitez, "AI Classifiers Comparison for Network Anomaly Behavior Analysis," in 2022 IEEE/ACS 19th International Conference on Computer Systems and Applications (AICCSA), Abu Dhabi, United Arab Emirates, 2022 pp. 1-5. doi: 10.1109/AICCSA56895.2022.10017930 - 2022 - в издания, индексирани в Scopus или Web of Science
    43. T. -C. Leung and C. -N. Lee, "Flow-Based DDoS Detection Using Deep Neural Network with Radial Basis Function Neural Network," 2022 Asia-Pacific Signal and Information Processing Association Annual Summit and Conference (APSIPA ASC), Chiang Mai, Thailand, 2022, pp. 1774-1779, doi: 10.23919/APSIPAASC55919.2022.9980171. - 2022 - в издания, индексирани в Scopus или Web of Science
    44. Pandey, N., Mishra, P.K. (2022). A Survey on DDoS Attacks on Network and Application Layer in IoT. In: Woungang, I., Dhurandher, S.K., Pattanaik, K.K., Verma, A., Verma, P. (eds) Advanced Network Technologies and Intelligent Computing. ANTIC 2021. Communications in Computer and Information Science, vol 1534. Springer, Cham. https://doi.org/10.1007/978-3-030-96040-7_19 - 2022 - в издания, индексирани в Scopus или Web of Science
    45. Somasundaram, A. and V. S. Meenakshi. “A Novel Three Layer Filtering (3L-F) Framework for Prevention of DDoS Attack in Cloud Environment.” International Journal of Computer Networks and Applications (2021): n. pag. - 2021 - в издания, индексирани в Scopus или Web of Science
    46. S. Risnanto, Y. A. Rahim, O. Mohd, Kusmadi, A. E. R and R. S. Perdana, "E-Voting: Security, Threats and Prevention," 2021 15th International Conference on Telecommunication Systems, Services, and Applications (TSSA), Bali, Indonesia, 2021, pp. 1-8, doi: 10.1109/TSSA52866.2021.9768214. - 2021 - в издания, индексирани в Scopus или Web of Science
    47. T. Cao, J. Mao, T. Bhattacharya, X. Peng, W. -S. Ku and X. Qin, "DDoS Detection Systems for Cloud Data Storage," 2021 Third IEEE International Conference on Trust, Privacy and Security in Intelligent Systems and Applications (TPS-ISA), Atlanta, GA, USA, 2021, pp. 183-190, doi: 10.1109/TPSISA52974.2021.00021. - 2021 - в издания, индексирани в Scopus или Web of Science
    48. Amangele, P. (2022). Efficient Malicious Packet Detection in Software Defined Networks (Doctoral dissertation, University of Essex). - 2022 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    49. Serrano, J. F. B. (2022). DDoS attacks mathematical modelling in software defined networks for enhanced detection systems (Doctoral dissertation, RMIT University). - 2022 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    50. Zuva, S. (2023). Assessing the Effectiveness of Snort in Detecting Malicious URLs. - 2023 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    51. AL-HRAISHAWI, F. N., & Kurnaz, S. (2023). An Analysis of the Cyber Security Opportunity and Challenges. Intent Research Scientific Journal, 2(7), 60-77. - 2023 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    52. Исхакова, А. О. ЗАЩИТА ИНТЕРФЕЙСОВ УПРАВЛЕНИЯ КИБЕРФИЗИЧЕСКОЙ СИСТЕМОЙ ОТ МНОГОВЕКТОРНЫХ АТАК ПРИКЛАДНОГО УРОВНЯ, НАПРАВЛЕННЫХ НА НАРУШЕНИЕ ДОСТУПНОСТИ1. - 2023 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    53. Sreeja Nair, M. P., & Mathew Cherian, P. M. K. Application Layer DDoS Attack Defense Methods with a New Method against Flooding. - 2020 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    54. Patel, R. K., Singh, L. K., & Kumar, N. Literature Review of Distributed: Denial of Service Attack Protection. - 2023 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    55. Kumar, S., Singh, N. P., & Kumar, N. Literature Review of Distributed Denial of Service (DDoS) Attacks, its Detection Techniques and Prevention Mechanisms. - 2022 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    56. Kaura, S., Singhb, G., & Singhc, B. Detection of Prevention of DDoS Attack Using Gateway Mechanism. International Journal on Recent and Innovation Trends in Computing and Communication, 7(2), 21-26. - 2019 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    57. Mahadik, A., Bhosale, R., & Kanthe, A. (2020). EFFICIENT DETECTION OF DOS ATTACK USING FUZZY ANN. - 2020 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science
    58. STROMSKÝ, Lukáš. Nástroje podporující útoky typu odepření služby. Online, Diplomová práce. Ostrava: Vysoká škola báňská - Technická univerzita Ostrava, 2019. Dostupné z: http://hdl.handle.net/10084/140542. [cit. 2024-02-26]. - 2019 - от чужди автори в чужди издания, неиндексирани в Scopus или Web of Science

    Вид: публикация в международен форум, публикация в реферирано издание, индексирана в Scopus и Web of Science