Archives and Documentation Center
Digital Archives

Novel time-series based DDOS attack detection schemes for traditional networks and software defined networks

Show simple item record

dc.contributor Ph.D. Program in Electrical and Electronic Engineering.
dc.contributor.advisor Anarım, Emin.
dc.contributor.author Fouladi, Ramin Fadaei.
dc.date.accessioned 2023-03-16T10:25:43Z
dc.date.available 2023-03-16T10:25:43Z
dc.date.issued 2021.
dc.identifier.other EE 2021 F68 PhD
dc.identifier.uri http://digitalarchive.boun.edu.tr/handle/123456789/13164
dc.description.abstract Distributed Denial of Service (DDoS) attacks are always one of the most signifi cant threats for computer networks since they affect the user satisfaction by degrading the availability of on-line services. Although some countermeasures such as Intrusion Detection Systems (IDSs) provide effective mechanisms to discriminate various types of DDoS attacks, they become impotent of detection when bogus packets similar to normal ones are dispatched by the attacker. One promising approach for the DDoS detection in traditional networks is to use the time-series representation of the network traffic while analyzing the incoming packets. Particularly, discriminating features are extracted from the representation of the traffic flow in order to be used with several data analytic techniques such as statistical measures or machine learning algorithms. In this thesis, we first improve the previous works in the literature for the traditional networks by introducing three methods using frequency domain analysis and statistical measures. Later, we extend our findings for SDNs and we propose three different DDoS detection and countermeasure schemes for SDN by employing: (i) Auto-Regressive Integrated Moving Average and a dynamic thresholding method, (ii) Discrete Wavelet Transform and Auto-Encoder Networks, and (iii) Continuous Wavelet Transform and Convolu tional Neural Network. Experimental results show that proposed schemes have high detection and low false alarm rates. Finally, we compare proposed schemes in terms of their attack detection performance and computational complexity cost analysis.
dc.format.extent 30 cm.
dc.publisher Thesis (Ph.D.) - Bogazici University. Institute for Graduate Studies in Science and Engineering, 2021.
dc.subject.lcsh Denial of service attacks.
dc.subject.lcsh Internet -- Security measures.
dc.title Novel time-series based DDOS attack detection schemes for traditional networks and software defined networks
dc.format.pages xxiv, 142 leaves ;


Files in this item

This item appears in the following Collection(s)

Show simple item record

Search Digital Archive


Browse

My Account