Threat Assessment of DDoS Attacks based on Rough Set Algorithm

Quan-zhen SONG,Xiu-zhen CHEN,Jin MA
DOI: https://doi.org/10.3969/j.issn.1002-0802.2017.01.019
2017-01-01
Abstract:DDoS attack, with easy launch and hard defence, is always a matter of concern in network security. Aiming at common in-flood DDoS attacks (cc attack), the security assessment method based on rough set algorithms is proposed, thus to achieve real-time quantitative assessment of security threats. By measuring changes in related indices of network and system performance before and after attack, a series of indices for evaluating DDoS attacks, are determined, then further with rough set algorithm the sample decision table of DDoS attacks, is analyzed, the normalized importance of each index calculated,and the weight of each index acguired. Finally the security situation value is obtained by weighted summation of the chosen indices. Experiments show that this method can effectively quantify the changes of system security state before and after attack. Compared with the existing security assessment methods, the security evaluation method based on rough set theory can determine the weight of indices without any reliance on prior knowledge, and objectively evaluate and predict the DDoS attack.
What problem does this paper attempt to address?