Light-weight Detection Method Against SYN Flooding Attacks

严芬,王佳佳,陈轶群,殷新春,黄皓
DOI: https://doi.org/10.3969/j.issn.1002-137x.2008.09.019
2008-01-01
Computer Science
Abstract:An efficient light-weight method for defending against DDoS attacks at the source-end is designed.We use Bloom Filter to pick up the Abstract of packets,and then use change point computation technology to detect abnormity.The method can not only detect the existence of SYN Flooding attacks,but also avoid the false alarm of normal congestion.In experiment environment,DARPA data is replayed and the result shows that our method obtains more accurate detection result with less computation than other similar methods.
What problem does this paper attempt to address?