Detecting LDoS Attacks Based on FP-Tree Candidate Combination Pattern

Zhao Sheng-yan · Journal of Dongguan University of Technology · 2011

Low-rate Denial-of-Service(LDoS) is,as a new kind of attacks,more difficult to detect and defend than traditional flooding DDoS attacks.This paper analyzes the data flow distribution characteristics with added LdoS,locating suspisious IP flow by setting the flow information of the entropy threshold and matching the frequent port mode in the FP tree path to find LdoS attack and its attack characteristics with mining algorithm for Candidate Combination Frequent Pattern.Simulation experiments show that the detection approaches of LDoS can reach high detection accuracy.

Read the paper · More papers on PaperTik