SGER: A New Approach for Identifying DoS Attackers Based on Group Testing Techniques
SGER: A New Approach for Identifying DoS Attackers Based on Group Testing Techniques
批准号:
0847869
负责人:
My Thai
金额:
$15.0万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2008
资助国家:
美国
项目状态:
已结题
起止时间:
2008-09-01 至 2010-08-31
中文摘要
互联网安全中最关键的问题之一是拒绝服务(DoS)攻击,其目的是使合法客户端无法使用服务。在这个项目中,我们考虑一种复杂的攻击,称为服务级DoS攻击,这种攻击很难识别,因为恶意请求可以任意地发出与合法请求相似的请求,并且可以绕过基于网络的防御系统。提出了一种基于组测试(GT)技术的攻击检测框架,克服了现有检测方法的局限性。更具体地说,该项目旨在研究以下挑战:1)研究动态阈值模型来处理合法突发和每个服务器上客户端数量的变化;2)合法请求和恶意请求相似,需要新的测试设计,而不需要逐个检查每个请求或严格指定合法行为;3)此外,该模型的研究引发了一种新型的GT,称为尺寸约束组测试(SCGT),它需要深入分析矩阵构造的复杂性。这个数学上严谨的框架有助于最大限度地减少检测的假阳性和假阴性,这是目前任何现有防御机制的主要问题。
英文摘要
One of the most critical problems in Internet security is the Denial-of-Service (DoS) attack, which aims to make a service unavailable to legitimate clients. In this project, we consider a sophisticated attack, called service-level DoS attack, which is very difficult to identify as malicious requests can be made arbitrarily similar to legitimate ones and can bypass the network-based defense systems. We propose a novel framework to detect the attackers based on the group testing (GT) technique which can overcome the limitations of current detection approaches. More specifically, this project seeks to investigate the following challenges: 1) Dynamic threshold model is studied to handle the legitimate bursts and variance in the number of clients on each server; 2) Legitimates and malicious requests are similar, required new testing design without examining each request one by one or tightly specifying legitimate behaviors; 3) In addition, the study of the proposed model evokes a new type of GT, called Size Constraint Group Testing (SCGT) which requires an in depth analysis of matrix construction complexity. This mathematically rigorous framework helps to minimize the false positive and false negative of detection, which is the main problem currently for any existing defense mechanisms.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Collaborative Research: SaTC: CORE: Medium: Information Integrity: A User-centric Intervention
-
批准号:2323794
-
项目类别:Continuing Grant
-
资助金额:$74.4万
-
财政年份:2023
-
负责人:My Thai
-
依托单位:
Collaborative Research: SaTC: EAGER: Trustworthy and Privacy-preserving Federated Learning
-
批准号:2140477
-
项目类别:Standard Grant
-
资助金额:$6.0万
-
财政年份:2021
-
负责人:My Thai
-
依托单位:
Collaborative Research: SCH: Trustworthy and Explainable AI for Neurodegenerative Diseases
-
批准号:2123809
-
项目类别:Standard Grant
-
资助金额:$84.0万
-
财政年份:2021
-
负责人:My Thai
-
依托单位:
SaTC: CORE: Small: Collaborative: When Adversarial Learning Meets Differential Privacy: Theoretical Foundation and Applications
-
批准号:1935923
-
项目类别:Standard Grant
-
资助金额:$25.0万
-
财政年份:2020
-
负责人:My Thai
-
依托单位:
III: Small: Collaborative Research: Stream-Based Active Mining at Scale: Non-Linear Non-Submodular Maximization
-
批准号:1908594
-
项目类别:Standard Grant
-
资助金额:$25.0万
-
财政年份:2019
-
负责人:My Thai
-
依托单位:
NeTS: Small: Collaborative Research: Lightweight Adaptive Algorithms for Network Optimization at Scale towards Emerging Services
-
批准号:1814614
-
项目类别:Standard Grant
-
资助金额:$27.2万
-
财政年份:2018
-
负责人:My Thai
-
依托单位:
EARS: Collaborative Research: Laying the Foundations of Social Network-Aware Cellular Device-to-Device Communications
-
批准号:1443905
-
项目类别:Standard Grant
-
资助金额:$22.75万
-
财政年份:2015
-
负责人:My Thai
-
依托单位:
Collaborative Research: RIPS Type 2: Vulnerability Assessment and Resilient Design of Interdependent Infrastructures
-
批准号:1441231
-
项目类别:Standard Grant
-
资助金额:$109.95万
-
财政年份:2014
-
负责人:My Thai
-
依托单位:
CIF: Small: Modeling and Dynamic Analyzing for Multiplex Social Networks
-
批准号:1422116
-
项目类别:Standard Grant
-
资助金额:$26.9万
-
财政年份:2014
-
负责人:My Thai
-
依托单位:
CAREER: Optimization Models and Approximation Algorithms for Network Vulnerability and Adaptability
-
批准号:0953284
-
项目类别:Continuing Grant
-
资助金额:$40.0万
-
财政年份:2010
-
负责人:My Thai
-
依托单位:
海外基金