Monitoring the Application-Layer DDoS Attacks for Popular Websites
Source: Institute of Electrical and Electronics Engineers
Distributed Denial of Service (DDoS) attack is a continuous critical threat to the Internet. Derived from the low layers, new application-layer-based DDoS attacks utilizing legitimate HTTP requests to overwhelm victim resources are more undetectable. The case may be more serious when such attacks mimic or occur during the flash crowd event of a popular Website. Focusing on the detection for such new DDoS attacks, a scheme based on document popularity is introduced. An Access Matrix is defined to capture the spatial-temporal patterns of a normal flash crowd. Principal component analysis and independent component analysis are applied to abstract the multidimensional Access Matrix.
| Format: | Size: | 861.10 | |
| Date: | Aug 2009 |



