{"title":"基于irc的DDoS攻击检测系统","authors":"Y. Xiang, Wanlei Zhou","doi":"10.1109/ICCGI.2006.15","DOIUrl":null,"url":null,"abstract":"Distributed denial of service (DDoS) attacks has been a serious threat on security of the current Internet. Recently there is a trend that many DDoS attacks utilize Internet relay chat (IRC) infrastructures as the communication channels. In this paper we propose an intrusion surveillance system (ISS) to detect IRC-based DDoS attacks. The main functions of ISS are to observe network conditions, gather intelligence from distributed sources, and determine what potential attacks will likely happen. We give the detailed design of ISS in this paper. We also implement this system by using a new approach of text-based decision making - distributed preference-based surveillance (DPBS) algorithm. By experiments we demonstrate that this distributed algorithm can effectively identify potential IRC-based DDoS attacks based on the information from different locations","PeriodicalId":112974,"journal":{"name":"2006 International Multi-Conference on Computing in the Global Information Technology - (ICCGI'06)","volume":"4 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2006-08-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":"{\"title\":\"An Intrusion Surveillance System to Detect IRC-based DDoS Attacks\",\"authors\":\"Y. Xiang, Wanlei Zhou\",\"doi\":\"10.1109/ICCGI.2006.15\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Distributed denial of service (DDoS) attacks has been a serious threat on security of the current Internet. Recently there is a trend that many DDoS attacks utilize Internet relay chat (IRC) infrastructures as the communication channels. In this paper we propose an intrusion surveillance system (ISS) to detect IRC-based DDoS attacks. The main functions of ISS are to observe network conditions, gather intelligence from distributed sources, and determine what potential attacks will likely happen. We give the detailed design of ISS in this paper. We also implement this system by using a new approach of text-based decision making - distributed preference-based surveillance (DPBS) algorithm. By experiments we demonstrate that this distributed algorithm can effectively identify potential IRC-based DDoS attacks based on the information from different locations\",\"PeriodicalId\":112974,\"journal\":{\"name\":\"2006 International Multi-Conference on Computing in the Global Information Technology - (ICCGI'06)\",\"volume\":\"4 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2006-08-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"2\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2006 International Multi-Conference on Computing in the Global Information Technology - (ICCGI'06)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICCGI.2006.15\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2006 International Multi-Conference on Computing in the Global Information Technology - (ICCGI'06)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICCGI.2006.15","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
An Intrusion Surveillance System to Detect IRC-based DDoS Attacks
Distributed denial of service (DDoS) attacks has been a serious threat on security of the current Internet. Recently there is a trend that many DDoS attacks utilize Internet relay chat (IRC) infrastructures as the communication channels. In this paper we propose an intrusion surveillance system (ISS) to detect IRC-based DDoS attacks. The main functions of ISS are to observe network conditions, gather intelligence from distributed sources, and determine what potential attacks will likely happen. We give the detailed design of ISS in this paper. We also implement this system by using a new approach of text-based decision making - distributed preference-based surveillance (DPBS) algorithm. By experiments we demonstrate that this distributed algorithm can effectively identify potential IRC-based DDoS attacks based on the information from different locations