Synflood Spoof Source DDOS Attack Defence Based on Packet ID Anomaly Detection � PIDAD

Tran Manh Thang, Văn Đức Nguyễn · Software Networking · 2016

A distributed denial-of-service (DDoS) attack characterized by flooding SYN packets is one of the network attacks to make the information system unavailable.This kind of attack becomes dangerous and more difficult to prevent and defense when attackers try to send flood SYN packets with spoof source, especially, there packets have information fields as the normal SYN packets.In this study, we propose a method called Packet Identification Anomaly Detection -PIDAD used to defense type of DDoS attack mentioned above.This method based on abnormal information of identification field in IP Header when observing the set of packets received in the victim system.

Read the paper · More papers on PaperTik