| Alternate document: Details Detecting Tables in HTML Documents (02) Yalin Wang, Jianying Hu |
| Alternate document: Details Detecting Cognitive States Using Machine Learning (02) Xuerui Wang Tom Mitchell Center for Automated Learning and Discovery School of |
(Enter summary)
Abstract: We propose a simple and robust mechanism for detecting
SYN flooding attacks. Instead of monitoring the ongoing
traffic at the front end (like firewall or proxy) or a victim server
itself, we detect the SYN flooding attacks at leaf routers that connect
end hosts to the Internet. The simplicity of our detection
mechanism lies in its statelessness and low computation overhead,
which make the detection mechanism itself immune to flooding attacks.
Our detection mechanism is based on the protocol... (Update)
Cited by: More
Defending against Distributed Denial-of-Service Attacks.. - Yau, Lui, Liang, Yam (2005)
(Correct)
Detecting Anomalies in Network Traffic Using Maximum Entropy.. - Yu Gu Andrew (2005)
(Correct)
Streams, Security and Scalability - Theodore Johnson Muthukrishnan (2005)
(Correct)
Similar documents (at the sentence level):
12.1%: SYN-dog: Sniffing SYN Flooding Sources - Wang, Zhang, Shin (2002)
(Correct)
Active bibliography (related documents): More All
1.6: Detecting SYN Flooding Attacks - Wang, Zhang, Shin (2002)
(Correct)
0.3: On Scalable Attack Detection in the Network - Ramana Rao Kompella (2004)
(Correct)
0.2: A Recursive Session Token Protocol for Use in Computer.. - Carrier, Shields (2002)
(Correct)
Similar documents based on text: More All
1.1: Improving The Functionality Of SYN Cookies - Zuquete (2002)
(Correct)
0.7: Network-based Intrusion Detection Model for Detecting.. - Urupoj Kanlayasiri.. (2000)
(Correct)
0.4: Defending against a Denial-of-Service Attack on TCP - Mutaf (1999)
(Correct)
Related documents from co-citation: More All
14: Controlling high bandwidth aggregates in the network
- Mahajan, Bellovin et al. - 2001
12: Inferring Internet Denial-of-Service Activity
- Moore, Voelker et al. - 2001
12: MULTOPS: a datastructure for bandwidth attack detection
- Gil, Poletto - 2001
BibTeX entry: (Update)
H. Wang, D. Zhang, and K. G. Shin. Detecting syn flooding attacks. In Proceedings of IEEE INFOCOM '2002. http://citeseer.ist.psu.edu/wang02detecting.html More
@misc{ wang02detecting,
author = "H. Wang and D. Zhang and K. Shin",
title = "Detecting syn flooding attacks",
text = "H. Wang, D. Zhang, and K. G. Shin. Detecting syn flooding attacks. In Proceedings
of IEEE INFOCOM '2002.",
year = "2002",
url = "citeseer.ist.psu.edu/wang02detecting.html" }
Citations (may not include all citations):
610
Wide-Area Traffic: The Failure of Poisson Modeling
- Paxson, Floyd - 1995
321
TCPIP Illustrated (context) - IP, Addison et al. - 1994
261
Wide-Area Internet Traffic Patterns and Characteristics (context) - Thompson, Miller et al. - 1997
192
System Design Issues for Internet Middleware Services: Deduc..
- Gribble, Brewer - 1997
154
Network Ingress Filtering: Defeating Denial of Service Attac.. (context) - Ferguson, Senie - 1998
148
Practical Network Support for IP Traceback
- Savage, Wetherall et al. - 2000
129
Detection of Abrupt Changes : Theory and Application
- Basseville, Nikiforov - 1993
113
Inferring Internet Denial of Service Activity
- Moore, Voelker et al. - 2001
107
High Speed Policy-based Packet Forwarding Using Efficient Mu..
- Lakshman, Stiliadis - 1998
78
Analysis of a Denial of Service Attack on TCP
- Schuba, Krsul et al. - 1997
70
Hash-Based IP Traceback
- Snoren, Partridge et al. - 2001
66
Packet Classification on Multiple Fields
- Gupta, McKeown - 1999
64
ICMP Traceback Messages (context) - Bellovin - 2000
63
Advanced and Authenticated Marking Schemes for IP Traceback
- Song, Perrig - 2001
56
Trends in Wide Area IP Traffic Patterns --- A View from Ames..
- McCreary, Claffy - 2000
55
the Effectiveness of Route-Based Packet Filtering for Distri..
- Park, Lee - 2001
48
Fast and Scalable Layer Four Switching
- Srinivasan, Varghese et al. - 1998
36
MULTOPS: a data-structure for bandwidth attack detection
- Gil, Poletter - 2001
36
Characteristics of wide-area TCP/IP conversations (context) - Caceres, Danzig et al. - 1991
35
What TCP/IP Protocol Header Can Tell Us About the Web
- Smith, Campos et al. - 2001
33
Denial-of-Service Attack Rip the Internet (context) - Garber - 2000
33
Characteristics of TCP Connection Arrivals
- Feldmann - 1998
26
the Effectiveness of Probabilistic Packet Marking for IP Tra..
- Park, Lee - 2001
22
IP packet generation: statistical models for TCP start times..
- Cleveland, Lin et al. - 2000
19
DDN Network Information Center (context) - Postel, Protocol et al. - 1981
19
Nonparametric Methods in Changepoint Problems (context) - Brodsky, Darkhovsky - 1993
9
A Multi-layer IPsec Protocol
- Zhang, Singh - 2000
6
Hot Spares for DoS attacks (context) - Darmohray, Oliver - 2000
5
Intention-driven ICMP traceback (context) - Wu, Zhang et al. - 2001
3
Layer-4 Service Differentiation and Isolation (context) - Wang, Shin - 2001
3
Resisting SYN Flooding DoS Attacks with a SYN Cache (context) - Lemon - 2002
http://www.checkpoint.com/products/firewall-1
http://www.bronzesoft.org/projects/scfw
http://www.netscreen.com/
http://staff.washington.edu/dittrich/misc/ddos/
The graph only includes citing articles where the year of publication is known.
Documents on the same site (http://kabru.eecs.umich.edu/papers/publications/2002/): More
Improving Wait-Free Algorithms for Interprocess.. - Huang, Pillai, Shin (2002)
(Correct)
Multicast Video-on-Demand Services - Ma, Shin (2002)
(Correct)
Achieving Efficient Channel Utilization and Weighted Fairness.. - Qiao, Shin (2002)
(Correct)
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC