Dynamic Economic-Denial-of-Sustainability (EDoS) Detection in SDN-based Cloud

Phuc Trinh Dinh, Minho Park
{"title":"Dynamic Economic-Denial-of-Sustainability (EDoS) Detection in SDN-based Cloud","authors":"Phuc Trinh Dinh, Minho Park","doi":"10.1109/FMEC49853.2020.9144972","DOIUrl":null,"url":null,"abstract":"In Cloud Computing, a new type of attack, called Economic Denial of Sustainability (EDoS) attack, exploits the pay-per-use model to scale up the resource usage over time to the extent that the cloud user has to pay for the unexpected usage charge. To prevent EDoS attacks, we propose an efficient solution in the SDN-based cloud computing environment. In this paper, we first apply an unsupervised learning approach called Long Short-Term Memory (LSTM), which is a multivariate time series anomaly detection, to detect EDoS attacks. Its key idea is to try to predict values of the resource usage of a cloud consumer (CPU load, memory usage and etc). Furthermore, unlike other existing proposals using a predefined threshold to classify the anomalies which generate high rate errors, in this work, we utilize a dynamic error threshold which delivers much better performance. Through practical experiments, the proposed EDoS attack defender is proven to outperform existing mechanisms for EDoS attack detection. Furthermore, it also outperforms some of the machine-learning-based methods, which we conducted the experiment ourselves. The comprehensive experiments conducted with various EDoS attack levels prove that the proposed mechanism is an effective, innovative approach to defense EDoS attacks in the SDN-based cloud.","PeriodicalId":110283,"journal":{"name":"2020 Fifth International Conference on Fog and Mobile Edge Computing (FMEC)","volume":"23 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2020-04-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"8","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2020 Fifth International Conference on Fog and Mobile Edge Computing (FMEC)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/FMEC49853.2020.9144972","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 8

Abstract

In Cloud Computing, a new type of attack, called Economic Denial of Sustainability (EDoS) attack, exploits the pay-per-use model to scale up the resource usage over time to the extent that the cloud user has to pay for the unexpected usage charge. To prevent EDoS attacks, we propose an efficient solution in the SDN-based cloud computing environment. In this paper, we first apply an unsupervised learning approach called Long Short-Term Memory (LSTM), which is a multivariate time series anomaly detection, to detect EDoS attacks. Its key idea is to try to predict values of the resource usage of a cloud consumer (CPU load, memory usage and etc). Furthermore, unlike other existing proposals using a predefined threshold to classify the anomalies which generate high rate errors, in this work, we utilize a dynamic error threshold which delivers much better performance. Through practical experiments, the proposed EDoS attack defender is proven to outperform existing mechanisms for EDoS attack detection. Furthermore, it also outperforms some of the machine-learning-based methods, which we conducted the experiment ourselves. The comprehensive experiments conducted with various EDoS attack levels prove that the proposed mechanism is an effective, innovative approach to defense EDoS attacks in the SDN-based cloud.
基于sdn的云中的动态经济可持续性拒绝检测
在云计算中,有一种新型的攻击,称为经济拒绝可持续性(EDoS)攻击,它利用按使用付费的模式,随着时间的推移,将资源的使用扩大到云用户必须支付意外使用费的程度。针对基于sdn的云计算环境下的ddos攻击,提出了一种有效的解决方案。在本文中,我们首先应用了一种称为长短期记忆(LSTM)的无监督学习方法,它是一种多变量时间序列异常检测方法,用于检测dos攻击。它的关键思想是尝试预测云消费者的资源使用量(CPU负载、内存使用量等)。此外,与其他使用预定义阈值对产生高错误率的异常进行分类的建议不同,在这项工作中,我们使用动态错误阈值来提供更好的性能。通过实际实验,证明了该防御机制优于现有的dos攻击检测机制。此外,它还优于一些基于机器学习的方法,我们自己进行了实验。通过对各种ddos攻击级别的综合实验证明,该机制是一种有效、创新的防御基于sdn的云环境下ddos攻击的方法。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信