English
Related papers

Related papers: Fingerprinting Internet DNS Amplification DDoS Act…

200 papers

Detecting Domain Name System (DNS) tunneling is a significant challenge in security due to its capacity to hide harmful actions within DNS traffic that appears to be normal and legitimate. Traditional detection methods are based on…

Cryptography and Security · Computer Science 2025-07-15 Novruz Amirov , Baran Isik , Bilal Ihsan Tuncer , Serif Bahtiyar

A novel class of extreme link-flooding DDoS (Distributed Denial of Service) attacks is designed to cut off entire geographical areas such as cities and even countries from the Internet by simultaneously targeting a selected set of network…

Cryptography and Security · Computer Science 2019-03-06 Mostafa Rezazad , Matthias R. Brust , Mohammad Akbari , Pascal Bouvry , Ngai-Man Cheung

Distributed Denial of Service attacks represent an active cybersecurity research problem. Recent research shifted from static rule-based defenses towards AI-based detection and mitigation. This comprehensive survey covers several key…

Cryptography and Security · Computer Science 2026-03-20 Alexandru Apostu , Silviu Gheorghe , Andrei Hîji , Nicolae Cleju , Andrei Pătraşcu , Cristian Rusu , Radu Ionescu , Paul Irofti

One of the most difficult challenges in cybersecurity is eliminating Distributed Denial of Service (DDoS) attacks. Automating this task using artificial intelligence is a complex process due to the inherent class imbalance and lack of…

Cryptography and Security · Computer Science 2026-02-06 Ehsan Hallaji , Vaishnavi Shanmugam , Roozbeh Razavi-Far , Mehrdad Saif

The Internet has become a prime subject to security attacks and intrusions by attackers. These attacks can lead to system malfunction, network breakdown, data corruption or theft. A network intrusion detection system (IDS) is a tool used…

Cryptography and Security · Computer Science 2022-03-14 Tanwir Ahmad , Dragos Truscan , Juri Vain , Ivan Porres

The domain name system (DNS) is one of the most important components of today's Internet, and is the standard naming convention between human-readable domain names and machine-routable IP addresses of Internet resources. However, due to the…

Networking and Internet Architecture · Computer Science 2020-06-30 Aminollah Khormali , Jeman Park , Hisham Alasmary , Afsah Anwar , David Mohaisen

Distributed Denial-of-Service (DDoS) attacks are a major problem in the Internet today. In one form of a DDoS attack, a large number of compromised hosts send unwanted traffic to the victim, thus exhausting the resources of the victim and…

Networking and Internet Architecture · Computer Science 2007-05-23 Karim El Defrawy , Athina Markopoulou , Katerina Argyraki

It is not been a long time since the advent of cloud-based technology. However, in this short period of timeseveral advantages and disadvantages have been emerged. This is a problem solving technology with some threats as well. These…

Networking and Internet Architecture · Computer Science 2018-01-09 Hamed Rezaei , Nima Ghazanfari motlagha , Yaghoub Farjamib , Mohammad Hossein Yektae

The distributed denial-of-service (DDoS) attack stands out as a highly formidable cyber threat, representing an advanced form of the denial-of-service (DoS) attack. A DDoS attack involves multiple computers working together to overwhelm a…

Cryptography and Security · Computer Science 2025-03-10 Nizo Jaman Shohan , Gazi Tanbhir , Faria Elahi , Ahsan Ullah , Md. Nazmus Sakib

Distributed Denial-of-Service (DDoS) attacks represent a cost-effective and potent threat to network stability. While extensively studied in IPv4 networks, DDoS implications in IPv6 remain underexplored. The vast IPv6 address space renders…

Networking and Internet Architecture · Computer Science 2025-06-06 Ling Hu , Tao Yang , Yu Pang , Bingnan Hou , Zhiping Cai , Bo Yu

A considerable portion of the machine learning literature applied to intrusion detection uses outdated data sets based on a simulated network with a limited environment. Moreover, flaws usually appear in datasets and the way we handle them…

Cryptography and Security · Computer Science 2017-06-13 Veronica del Carmen Estrada

Amplification DDoS attacks inherently rely on IP spoofing to steer attack traffic to the victim. At the same time, IP spoofing undermines prosecution, as the originating attack infrastructure remains hidden. Researchers have therefore…

Cryptography and Security · Computer Science 2021-03-16 Johannes Krupp , Christian Rossow

Distributed Denial of Service (DDoS) is one of the most prevalent attacks that an organizational network infrastructure comes across nowadays. We propose a deep learning based multi-vector DDoS detection system in a software-defined network…

Networking and Internet Architecture · Computer Science 2018-01-03 Quamar Niyaz , Weiqing Sun , Ahmad Y Javaid

This paper presents the detection of DDoS attacks in IoT networks using machine learning models. Their rapid growth has made them highly susceptible to various forms of cyberattacks, many of whose security procedures are implemented in an…

Cryptography and Security · Computer Science 2024-11-12 Sushil Shakya , Robert Abbas

Distributed Denial of Service attacks have become a significant threat to industries and governments leading to substantial financial losses. With the growing reliance on internet services, DDoS attacks can disrupt services by overwhelming…

Machine Learning · Computer Science 2025-01-27 Debashis Kar Suvra

Denial of service attacks are especially pertinent to the internet of things as devices have less computing power, memory and security mechanisms to defend against them. The task of mitigating these attacks must therefore be redirected from…

Cryptography and Security · Computer Science 2020-08-10 Luca Arnaboldi , Charles Morisset

Data exfiltration over the DNS protocol and its detection have been researched extensively in recent years. Prior studies focused on offline detection methods, which although capable of detecting attacks, allow a large amount of data to be…

Cryptography and Security · Computer Science 2023-07-07 Yarin Ozery , Asaf Nadler , Asaf Shabtai

In this paper, we revisit the use of honeypots for detecting reflective amplification attacks. These measurement tools require careful design of both data collection and data analysis including cautious threshold inference. We survey common…

Cryptography and Security · Computer Science 2024-05-07 Marcin Nawrocki , John Kristoff , Raphael Hiesgen , Chris Kanich , Thomas C. Schmidt , Matthias Wählisch

In the last decade, the use of fast flux technique has become established as a common practice to organise botnets in Fast Flux Service Networks (FFSNs), which are platforms able to sustain illegal online services with very high…

Cryptography and Security · Computer Science 2018-09-19 Pierangelo Lombardo , Salvatore Saeli , Federica Bisio , Davide Bernardi , Danilo Massa

In the presence of security countermeasures, a malware designed for data exfiltration must do so using a covert channel to achieve its goal. Among existing covert channels stands the domain name system (DNS) protocol. Although the detection…

Cryptography and Security · Computer Science 2018-06-19 Asaf Nadler , Avi Aminov , Asaf Shabtai