Alternate document:   Details   Detecting Tables in HTML Documents (02) Yalin Wang, Jianying Hu

Alternate document:   Details   Detecting Cognitive States Using Machine Learning (02) Xuerui Wang Tom Mitchell Center for Automated Learning and Discovery School of

See this document in CiteSeerX!

Detecting SYN Flooding Attacks (2002)  (Make Corrections)  (22 citations)
Haining Wang, Danlu Zhang, Kang G. Shin



  Home/Search   Context   Related

 
View or download:
umich.edu/papers/pub...hxw_infocom02.ps
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  umich.edu/papers/publications/... (more)
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: We propose a simple and robust mechanism for detecting SYN flooding attacks. Instead of monitoring the ongoing traffic at the front end (like firewall or proxy) or a victim server itself, we detect the SYN flooding attacks at leaf routers that connect end hosts to the Internet. The simplicity of our detection mechanism lies in its statelessness and low computation overhead, which make the detection mechanism itself immune to flooding attacks. Our detection mechanism is based on the protocol... (Update)

Cited by:   More
Defending against Distributed Denial-of-Service Attacks.. - Yau, Lui, Liang, Yam (2005)   (Correct)
Detecting Anomalies in Network Traffic Using Maximum Entropy.. - Yu Gu Andrew (2005)   (Correct)
Streams, Security and Scalability - Theodore Johnson Muthukrishnan (2005)   (Correct)

Similar documents (at the sentence level):
12.1%:   SYN-dog: Sniffing SYN Flooding Sources - Wang, Zhang, Shin (2002)   (Correct)

Active bibliography (related documents):   More   All
1.6:   Detecting SYN Flooding Attacks - Wang, Zhang, Shin (2002)   (Correct)
0.3:   On Scalable Attack Detection in the Network - Ramana Rao Kompella (2004)   (Correct)
0.2:   A Recursive Session Token Protocol for Use in Computer.. - Carrier, Shields (2002)   (Correct)

Similar documents based on text:   More   All
1.1:   Improving The Functionality Of SYN Cookies - Zuquete (2002)   (Correct)
0.7:   Network-based Intrusion Detection Model for Detecting.. - Urupoj Kanlayasiri.. (2000)   (Correct)
0.4:   Defending against a Denial-of-Service Attack on TCP - Mutaf (1999)   (Correct)

Related documents from co-citation:   More   All
14:   Controlling high bandwidth aggregates in the network - Mahajan, Bellovin et al. - 2001
12:   Inferring Internet Denial-of-Service Activity - Moore, Voelker et al. - 2001
12:   MULTOPS: a datastructure for bandwidth attack detection - Gil, Poletto - 2001

BibTeX entry:   (Update)

H. Wang, D. Zhang, and K. G. Shin. Detecting syn flooding attacks. In Proceedings of IEEE INFOCOM '2002. http://citeseer.ist.psu.edu/wang02detecting.html   More

@misc{ wang02detecting,
  author = "H. Wang and D. Zhang and K. Shin",
  title = "Detecting syn flooding attacks",
  text = "H. Wang, D. Zhang, and K. G. Shin. Detecting syn flooding attacks. In Proceedings
    of IEEE INFOCOM '2002.",
  year = "2002",
  url = "citeseer.ist.psu.edu/wang02detecting.html" }
Citations (may not include all citations):
610   Wide-Area Traffic: The Failure of Poisson Modeling - Paxson, Floyd - 1995
321   TCPIP Illustrated (context) - IP, Addison et al. - 1994
261   Wide-Area Internet Traffic Patterns and Characteristics (context) - Thompson, Miller et al. - 1997
192   System Design Issues for Internet Middleware Services: Deduc.. - Gribble, Brewer - 1997
154   Network Ingress Filtering: Defeating Denial of Service Attac.. (context) - Ferguson, Senie - 1998
148   Practical Network Support for IP Traceback - Savage, Wetherall et al. - 2000
129   Detection of Abrupt Changes : Theory and Application - Basseville, Nikiforov - 1993
113   Inferring Internet Denial of Service Activity - Moore, Voelker et al. - 2001
107   High Speed Policy-based Packet Forwarding Using Efficient Mu.. - Lakshman, Stiliadis - 1998
78   Analysis of a Denial of Service Attack on TCP - Schuba, Krsul et al. - 1997
70   Hash-Based IP Traceback - Snoren, Partridge et al. - 2001
66   Packet Classification on Multiple Fields - Gupta, McKeown - 1999
64   ICMP Traceback Messages (context) - Bellovin - 2000
63   Advanced and Authenticated Marking Schemes for IP Traceback - Song, Perrig - 2001
56   Trends in Wide Area IP Traffic Patterns --- A View from Ames.. - McCreary, Claffy - 2000
55   the Effectiveness of Route-Based Packet Filtering for Distri.. - Park, Lee - 2001
48   Fast and Scalable Layer Four Switching - Srinivasan, Varghese et al. - 1998
36   MULTOPS: a data-structure for bandwidth attack detection - Gil, Poletter - 2001
36   Characteristics of wide-area TCP/IP conversations (context) - Caceres, Danzig et al. - 1991
35   What TCP/IP Protocol Header Can Tell Us About the Web - Smith, Campos et al. - 2001
33   Denial-of-Service Attack Rip the Internet (context) - Garber - 2000
33   Characteristics of TCP Connection Arrivals - Feldmann - 1998
26   the Effectiveness of Probabilistic Packet Marking for IP Tra.. - Park, Lee - 2001
22   IP packet generation: statistical models for TCP start times.. - Cleveland, Lin et al. - 2000
19   DDN Network Information Center (context) - Postel, Protocol et al. - 1981
19   Nonparametric Methods in Changepoint Problems (context) - Brodsky, Darkhovsky - 1993
9   A Multi-layer IPsec Protocol - Zhang, Singh - 2000
6   Hot Spares for DoS attacks (context) - Darmohray, Oliver - 2000
5   Intention-driven ICMP traceback (context) - Wu, Zhang et al. - 2001
3   Layer-4 Service Differentiation and Isolation (context) - Wang, Shin - 2001
3   Resisting SYN Flooding DoS Attacks with a SYN Cache (context) - Lemon - 2002
http://www.checkpoint.com/products/firewall-1
http://www.bronzesoft.org/projects/scfw
http://www.netscreen.com/
http://staff.washington.edu/dittrich/misc/ddos/



The graph only includes citing articles where the year of publication is known.


Documents on the same site (http://kabru.eecs.umich.edu/papers/publications/2002/):   More
Improving Wait-Free Algorithms for Interprocess.. - Huang, Pillai, Shin (2002)   (Correct)
Multicast Video-on-Demand Services - Ma, Shin (2002)   (Correct)
Achieving Efficient Channel Utilization and Weighted Fairness.. - Qiao, Shin (2002)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC