CIVILICA We Respect the Science
(ناشر تخصصی کنفرانسهای کشور / شماره مجوز انتشارات از وزارت فرهنگ و ارشاد اسلامی: ۸۹۷۱)

HF-Blocker: Detection of Distributed Denial of Service Attacks Based On Botnets

عنوان مقاله: HF-Blocker: Detection of Distributed Denial of Service Attacks Based On Botnets
شناسه ملی مقاله: JR_JACET-1-3_006
منتشر شده در شماره 3 دوره 1 فصل در سال 1394
مشخصات نویسندگان مقاله:

Bita Amirshahi - Department of Computer Eningeering and Information Technology, Payame Noor University, PO BOX ۱۹۳۹۵-۳۶۹۷ Tehran, IRAN
Ali Ahangari - Department of Computer Eningeering and Information Technology, Payame Noor University, PO BOX ۱۹۳۹۵-۳۶۹۷ Tehran, IRAN

خلاصه مقاله:
Abstract—Today, botnets have become a serious threat to enterprise networks. By creation of network of bots, they launch several attacks, distributed denial of service attacks (DDoS) on networks is a sample of such attacks. Such attacks with the occupation of system resources, have proven to be an effective method of denying network services. Botnets that launch HTTP packet flood attacks against Web servers are one of the newest and most troublesome threats in networks. In this paper, we present a system called HF-Blocker that detects and prevents the HTTP flood attacks. The proposed system, by checking at the HTTP request in three stages, a Java-based test, check cookies and then check the user agent, detects legitimate source of communication from malicios source, such as botnets. If it is proved the source of connection to be bot, HF-Blocker blocks the request and denies it to access to resources of the web server and thereby prevent a denial of service attack. Performance analysis showed that HF-Blocker, detects and prevents the HTTP-based attacks of botnets with high probability.

کلمات کلیدی:
botnet, web servers, DDoS attacks, HTTP, HTTP Flood

صفحه اختصاصی مقاله و دریافت فایل کامل: https://civilica.com/doc/892698/