Detection System of HTTP DDoS Attacks in a Cloud Environment Based on Information Theoretic Entropy and Random Forest

المؤلفون المشاركون

Idhammad, Mohamed
Afdel, Karim
Belouch, Mustapha

المصدر

Security and Communication Networks

العدد

المجلد 2018، العدد 2018 (31 ديسمبر/كانون الأول 2018)، ص ص. 1-13، 13ص.

الناشر

Hindawi Publishing Corporation

تاريخ النشر

2018-06-05

دولة النشر

مصر

عدد الصفحات

13

التخصصات الرئيسية

تكنولوجيا المعلومات وعلم الحاسوب

الملخص EN

Cloud Computing services are often delivered through HTTP protocol.

This facilitates access to services and reduces costs for both providers and end-users.

However, this increases the vulnerabilities of the Cloud services face to HTTP DDoS attacks.

HTTP request methods are often used to address web servers’ vulnerabilities and create multiple scenarios of HTTP DDoS attack such as Low and Slow or Flooding attacks.

Existing HTTP DDoS detection systems are challenged by the big amounts of network traffic generated by these attacks, low detection accuracy, and high false positive rates.

In this paper we present a detection system of HTTP DDoS attacks in a Cloud environment based on Information Theoretic Entropy and Random Forest ensemble learning algorithm.

A time-based sliding window algorithm is used to estimate the entropy of the network header features of the incoming network traffic.

When the estimated entropy exceeds its normal range the preprocessing and the classification tasks are triggered.

To assess the proposed approach various experiments were performed on the CIDDS-001 public dataset.

The proposed approach achieves satisfactory results with an accuracy of 99.54%, a FPR of 0.4%, and a running time of 18.5s.

نمط استشهاد جمعية علماء النفس الأمريكية (APA)

Idhammad, Mohamed& Afdel, Karim& Belouch, Mustapha. 2018. Detection System of HTTP DDoS Attacks in a Cloud Environment Based on Information Theoretic Entropy and Random Forest. Security and Communication Networks،Vol. 2018, no. 2018, pp.1-13.
https://search.emarefa.net/detail/BIM-1213864

نمط استشهاد الجمعية الأمريكية للغات الحديثة (MLA)

Idhammad, Mohamed…[et al.]. Detection System of HTTP DDoS Attacks in a Cloud Environment Based on Information Theoretic Entropy and Random Forest. Security and Communication Networks No. 2018 (2018), pp.1-13.
https://search.emarefa.net/detail/BIM-1213864

نمط استشهاد الجمعية الطبية الأمريكية (AMA)

Idhammad, Mohamed& Afdel, Karim& Belouch, Mustapha. Detection System of HTTP DDoS Attacks in a Cloud Environment Based on Information Theoretic Entropy and Random Forest. Security and Communication Networks. 2018. Vol. 2018, no. 2018, pp.1-13.
https://search.emarefa.net/detail/BIM-1213864

نوع البيانات

مقالات

لغة النص

الإنجليزية

الملاحظات

Includes bibliographical references

رقم السجل

BIM-1213864