ETRI Journal (Apr 2022)

A SYN fl ooding attack detection approach with hierarchical policies based on self-information

  • Jia-Rong Sun,
  • Chin-Tser Huang,
  • Min-Shiang Hwang

DOI
https://doi.org/10.4218/etrij.2018-0382
Journal volume & issue
Vol. 44, no. 2
pp. 346 – 354

Abstract

Read online

The SYN flooding attack is widely used in cyber attacks because it paralyzes the network by causing the system and bandwidth resources to be exhausted. This paper proposed a self-information approach for detecting the SYN flooding attack and provided a detection algorithm with a hierarchical policy on a detection time domain. Compared with other detection methods of entropy measurement, the proposed approach is more efficient in detecting the SYN flooding attack, providing low misjudgment, hierarchical detection policy, and low time complexity. Furthermore, we proposed a detection algorithm with limiting system resources. Thus, the time complexity of our approach is only (log n) with lower time complexity and misjudgment rate than other approaches. Therefore, the approach can detect the denial-of-service/distributed denial-of-service attacks and prevent SYN flooding attacks.

Keywords