• DocumentCode
    2842145
  • Title

    Flash Crowd Detection Using Decoy Hyperlinks

  • Author

    Gavrilis, Dimitris ; Chatzis, Joannis ; Dermatas, Evangelos

  • Author_Institution
    Patras Univ., Patras
  • fYear
    2007
  • fDate
    15-17 April 2007
  • Firstpage
    466
  • Lastpage
    470
  • Abstract
    In this paper a novel method for detecting denial of service attacks (DoS) on web services are presented and evaluated by using decoy hyperlinks embedded in web pages. The decoys are hyperlinks without semantic information or are invisible to the human user, acting like traps for DoS attacks because a human user would never follow them. An attack on a web server is detected when such hyperlink is followed. This approach has significant advantages over other approaches like graphic Turing tests, it is transparent to the user, it can be used on general-purpose web sites and retains the web site´s usability. The proposed method has been evaluated using real web sites and the results show false positive rates that are less than 10-4. A genetic algorithm is used for the optimum placement of the decoys using simulated web sites. The aspects of this new method are discussed and some experimental results are presented.
  • Keywords
    Internet; Web services; Web sites; genetic algorithms; security of data; Web pages; Web server; Web services; Web sites; decoy hyperlinks; denial of service attacks; flash crowd detection; genetic algorithm; graphic Turing tests; Application software; Computer crime; Genetic algorithms; Graphics; Humans; Testing; Usability; Web pages; Web server; Web services;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Networking, Sensing and Control, 2007 IEEE International Conference on
  • Conference_Location
    London
  • Print_ISBN
    1-4244-1076-2
  • Electronic_ISBN
    1-4244-1076-2
  • Type

    conf

  • DOI
    10.1109/ICNSC.2007.372823
  • Filename
    4239036