ETRI-Knowledge Sharing Plaform

ENGLISH

성과물

논문 검색
구분 SCI
연도 ~ 키워드

상세정보

학술대회 A Combined Data Mining Approach for DDoS Attack Detection
Cited 24 time in scopus Download 0 time Share share facebook twitter linkedin kakaostory
저자
김미희, 나현정, 채기준, 방효찬, 나중찬
발행일
200411
출처
International Conference on Information Networking (ICOIN) 2004 (LNCS 3090), v.3090, pp.943-950
DOI
https://dx.doi.org/10.1007/978-3-540-25978-7_95
협약과제
04MK1100, 고성능 네트워크 정보보호시스템 개발, 손승원
초록
Recently, as the serious damage caused by DDoS attacks increases, the rapid detection and the proper response mechanisms are urgent. However, existing security mechanisms do not provide effective defense against these attacks, or the defense capability of some mechanisms is only limited to specific DDoS attacks. It is necessary to analyze the fundamental features of DDoS attacks because these attacks can easily vary the used port/protocol, or operation method. In this paper, we propose a combined data mining approach for modeling the traffic pattern of normal and diverse attacks. This approach uses the automatic feature selection mechanism for selecting the important attributes. And the classifier is built with the theoretically selected attribute through the neural network. And then, our experimental results show that our approach can provide the best performance on the real network, in comparison with that by heuristic feature selection and any other single data mining approaches. © Springer-Verlag Berlin Heidelberg 2004.
KSP 제안 키워드
Automatic feature selection, Best performance, DDoS attack detection, Data mining(DM), Defense Capability, Feature selection(FS), Operation method, Rapid detection, Selection mechanism, Traffic pattern, data mining approach