DDOS ATTACKS DEFENSE APPROACHES AND MECHANISM IN CLOUD ENVIROMENT
Sarah Naiem, Amira M. Idrees, Mohamed Ibrahim Marie, Ayman E. Khedr · Zenodo (CERN European Organization for Nuclear Research) · 2022
Cloud computing is becoming a very vital part of any business nowadays and the business sector’s main concern is the security in terms of availability, authenticity, and confidentiality. Distributed denial of services (DDOS) is becoming the main security threat in cloud where DDOS targets the cloud services and structure to obstruct the access of the rightful users. The protection of cloud from this attack is becoming very challenging, throughout this paper we first discussed the different prevention, detection, and mitigation approaches along with the techniques used for each approach. The prevention approaches include hidden servers, restrictive access, resource limitation, and challenge response, while the detection approached include signature and anomaly-based detection, data mining, resource usage and filtering techniques. Moreover, we discussed the recent defense mechanisms in the different approaches, and it was obvious that most of the defense mechanisms are only based on detection of the DDOS and there is a huge gap in terms of the prevention and mitigation approaches.