Title :
IP-traceback based attacker tracking: a probabilistic technique for detecting Internet attacks using the concept of hidden Markov models
Author :
Varanasi, Raviteja ; Phoha, Vir V. ; Joshi, Shrijit
Author_Institution :
Comput. Sci. Dept., Louisiana Tech. Univ., Ruston, LA, USA
Abstract :
In this paper we propose an extension to the probabilistic packet marking scheme, for detecting denial-of-service and distributed denial-of-service attacks, using the concept of hidden Markov models. Our approach has the potential of probabilistically reconstructing the attacking path from the available packets without the intervention of Internet service providers and without increasing the overhead on the packets.
Keywords :
IP networks; Internet; authorisation; hidden Markov models; packet switching; probability; IP-traceback; Internet attack detection; attacker tracking; denial-of-service detection; distributed denial-of-service attack detection; hidden Markov model; probabilistic packet marking scheme; Computer crime; Computer science; Conferences; Hidden Markov models; Media Access Protocol; Payloads; Sampling methods; Security; Web and internet services;
Conference_Titel :
Information Assurance Workshop, 2004. Proceedings from the Fifth Annual IEEE SMC
Print_ISBN :
0-7803-8572-1
DOI :
10.1109/IAW.2004.1437852