DocumentCode
2842145
Title
Flash Crowd Detection Using Decoy Hyperlinks
Author
Gavrilis, Dimitris ; Chatzis, Joannis ; Dermatas, Evangelos
Author_Institution
Patras Univ., Patras
fYear
2007
fDate
15-17 April 2007
Firstpage
466
Lastpage
470
Abstract
In this paper a novel method for detecting denial of service attacks (DoS) on web services are presented and evaluated by using decoy hyperlinks embedded in web pages. The decoys are hyperlinks without semantic information or are invisible to the human user, acting like traps for DoS attacks because a human user would never follow them. An attack on a web server is detected when such hyperlink is followed. This approach has significant advantages over other approaches like graphic Turing tests, it is transparent to the user, it can be used on general-purpose web sites and retains the web site´s usability. The proposed method has been evaluated using real web sites and the results show false positive rates that are less than 10-4. A genetic algorithm is used for the optimum placement of the decoys using simulated web sites. The aspects of this new method are discussed and some experimental results are presented.
Keywords
Internet; Web services; Web sites; genetic algorithms; security of data; Web pages; Web server; Web services; Web sites; decoy hyperlinks; denial of service attacks; flash crowd detection; genetic algorithm; graphic Turing tests; Application software; Computer crime; Genetic algorithms; Graphics; Humans; Testing; Usability; Web pages; Web server; Web services;
fLanguage
English
Publisher
ieee
Conference_Titel
Networking, Sensing and Control, 2007 IEEE International Conference on
Conference_Location
London
Print_ISBN
1-4244-1076-2
Electronic_ISBN
1-4244-1076-2
Type
conf
DOI
10.1109/ICNSC.2007.372823
Filename
4239036
Link To Document