Busca avançada
Ano de início
Entree


AnubisFlow: A Feature Extractor for Distributed Denial of Service Attack Classification

Texto completo
Autor(es):
Mostrar menos -
Barzilay, Alan ; Martinelli, Caio L. ; Nogueira, Michele ; Batista, Daniel M. ; Hirata, Roberto, Jr. ; Machuca, CM ; Martins, L ; Sargento, S ; Wauters, T ; Jorge, L ; Salhab, N ; Chemouil, P
Número total de Autores: 12
Tipo de documento: Artigo Científico
Fonte: PROCEEDINGS OF THE 2021 12TH INTERNATIONAL CONFERENCE ON NETWORK OF THE FUTURE (NOF 2021); v. N/A, p. 8-pg., 2021-01-01.
Resumo

The detection and mitigation of DDoS attacks require a system to analyze and process the incoming network flow in a live capture manner. In this scenario, an efficient analysis depends on a good set of features to classify the traffic. With this goal in mind, we propose a technique based on a new set of features that are computationally inexpensive and descriptive of the data stream. Moreover, the technique considers the flows in many moments, not only when they are finished. We analyze its predicting performance by creating a decision tree model and a logistic regression, which achieved 99.98% and 95.99% Cohen's Kappa coefficient, respectively. In spirit with the recent trend toward reproducibility of research results, we integrate the proposal in an open-source tool called AnubisFlow. Also, our analysis for the models is available as open data to the scientific community. (AU)

Processo FAPESP: 15/24485-9 - Internet do futuro aplicada a cidades inteligentes
Beneficiário:Fabio Kon
Modalidade de apoio: Auxílio à Pesquisa - Temático
Processo FAPESP: 18/22979-2 - IoT-SED: segurança e eficiência no transporte de dados na Internet das Coisas
Beneficiário:Daniel Macêdo Batista
Modalidade de apoio: Auxílio à Pesquisa - Regular
Processo FAPESP: 18/23098-0 - MENTORED: da modelagem à experimentação - predizendo e detectando ataques DDoS e zero-day
Beneficiário:Michele Nogueira Lima
Modalidade de apoio: Auxílio à Pesquisa - Temático
Processo FAPESP: 14/50937-1 - INCT 2014: da Internet do Futuro
Beneficiário:Fabio Kon
Modalidade de apoio: Auxílio à Pesquisa - Temático