Fuzzy Classification Of Ddos Flood Attacks Packets

Yan-Bo Zhang,Ming Li
2005-01-01
Abstract:Distributed Denial of Service (DDoS) flood attacks remain an immense threat to the Internet. The research about it gains much more attentions [1-7]. There are many detection mechanisms of DDoS flood attacks, including our early work [2, 5-7]. However, it is not enough only to report signs of DDoS attacks because efficient prevention needs classifying attack packets. To this end, this paper proposes a new classification scheme of attack packets. It is a threshold-based classification. The main aim of this classification is to give more useful information to Information Body by fuzzy classification, through which Information Body can both detect and react against ongoing attacks. The classification rules are selected to highlight important features of blended attacks. The proposed classification can be used to classify not only the existing attacks but also innovated ones. A case study is given to interpret the classification under dynamic threshold.
What problem does this paper attempt to address?