LORD: LOw Rate DDoS Attack Detection and Mitigation Using Lightweight Distributed Packet Inspection Agent in IoT Ecosystem

Pradeepkumar Bhale, Santosh Biswas, Sukumar Nandi · 2019

Now a Days, Internet of Things (IoT) is an emerging field of Wireless Networks. It will have a ubiquitous presence in the future, with millions of devices connected to the Internet and aiding day to day applications like smart home, hospitals, etc. However, all these applications come with huge security and privacy threats in IoT. A Low Rate Distributed Denial of Service (LRDDoS) attack is one of the most dangerous threats to resource-constrained devices and services. The DDoS attack is strenuous to detect because of its small-scale signal properties. In this paper, we innovatively propose lightweight distributed packet inspection agent which detects and alleviates LRDDoS attack in the IoT network. The approach is implemented in the Contiki OS, and the experimental outcomes exhibit that the proposed information metrics, and packet flow behavior graph can efficiently identify LRDDoS attacks with the minimum response time (1-3.47 seconds). The overall False Negative Rate, False Positive Rate on the benchmark and generated data set measured by the proposed approach are 5.15%, 3.82%, 5.41%, and 5.12% respectively.

Read the paper · More papers on PaperTik