DOI: 10.21123/2411-7986.5369 ISSN: 2411-7986

Detecting HTTP Flood Attacks Using 2D Array Summation

Kamal Alieyan, Belal Sudqi Khater, Ayman Ghaben, Mamoun Abu Helou, Waheeb Abu-Ulbeh, Hani Iwidat

One of the popular ways of attaching networks and servers is by adopting DDoS (Distributed denial of service). The preferred sector of hacking targeted are online services and networked area with high traffic. Although innovative and modern methods have been developed to mitigate these threats, there is still a need for more effective techniques to detect DDoS HTTP flooding attacks. This paper aims to address this gap by proposing an advanced mathematical approach capable of efficiently handling, processing, and detecting DDoS HTTP flooding attacks. The paper introduces a unique method based on the summation of rows and columns in a two-dimensional array representation of network traffic, offering a novel solution for detecting DDoS HTTP flooding attacks targeting web servers. The incoming traffic is first separated into aggregated packets based on time (t), and each aggregated packet is further divided into smaller time intervals called events. These events are then grouped based on time (t) into packets of equal size with the same inter-arrival time in which the proposed mechanism applied to detect DDoS HTTP flooding attacks. By carrying out detailed study about the experimental results on CIC DDoS dataset, an accuracy rate of 99.11% was re-ported. This indicates the effectiveness of detecting HTTP flooding DDoS attacks.

More from our Archive