Advanced search
Start date
Betweenand


AnubisFlow: A Feature Extractor for Distributed Denial of Service Attack Classification

Full text
Author(s):
Show less -
Barzilay, Alan ; Martinelli, Caio L. ; Nogueira, Michele ; Batista, Daniel M. ; Hirata, Roberto, Jr. ; Machuca, CM ; Martins, L ; Sargento, S ; Wauters, T ; Jorge, L ; Salhab, N ; Chemouil, P
Total Authors: 12
Document type: Journal article
Source: PROCEEDINGS OF THE 2021 12TH INTERNATIONAL CONFERENCE ON NETWORK OF THE FUTURE (NOF 2021); v. N/A, p. 8-pg., 2021-01-01.
Abstract

The detection and mitigation of DDoS attacks require a system to analyze and process the incoming network flow in a live capture manner. In this scenario, an efficient analysis depends on a good set of features to classify the traffic. With this goal in mind, we propose a technique based on a new set of features that are computationally inexpensive and descriptive of the data stream. Moreover, the technique considers the flows in many moments, not only when they are finished. We analyze its predicting performance by creating a decision tree model and a logistic regression, which achieved 99.98% and 95.99% Cohen's Kappa coefficient, respectively. In spirit with the recent trend toward reproducibility of research results, we integrate the proposal in an open-source tool called AnubisFlow. Also, our analysis for the models is available as open data to the scientific community. (AU)

FAPESP's process: 15/24485-9 - Future internet for smart cities
Grantee:Fabio Kon
Support Opportunities: Research Projects - Thematic Grants
FAPESP's process: 18/22979-2 - IoT-SED: security and efficiency in data transport on Internet of Things
Grantee:Daniel Macêdo Batista
Support Opportunities: Regular Research Grants
FAPESP's process: 18/23098-0 - MENTORED: from modeling to experimentation - predicting and detecting DDoS and zero-day attacks
Grantee:Michele Nogueira Lima
Support Opportunities: Research Projects - Thematic Grants
FAPESP's process: 14/50937-1 - INCT 2014: on the Internet of the Future
Grantee:Fabio Kon
Support Opportunities: Research Projects - Thematic Grants