Loading...

Detection and Mitigation of Application-Layer Denial of Service Attacks

Hadadian Neghad Yousefi, Mohammad | 2021

795 Viewed
  1. Type of Document: M.Sc. Thesis
  2. Language: Farsi
  3. Document No: 54605 (19)
  4. University: Sharif University of Technology
  5. Department: Computer Engineering
  6. Advisor(s): Kharrazi, Mehdi
  7. Abstract:
  8. With increasing the internet in sociality, lots of researches have been done about web security in three main principles: confidentiality, integrity, and availability. Attacks on availability have been there for lots of time and high-rate denial of service attacks ran against servers. These years lots of web applications have been developed with various and complex technologies and so we are facing another type of low-cost DoS attack on the application layer where attackers can crash down services by exploiting flaws in implementations by just a single carefully crafted request. Although works on finding vulnerabilities are worthy, as there are always some flaws in applications, we need another way to defend against DoS attacks. Existing approaches neither need source code or programmer annotations. As we do not always have access to the source code of third-party libraries, we need some other type of approach without these limitations. Also, previous works can detect attacks that occur with just a single request and can’t detect multi-request attacks. In this thesis, instead of working on requests separately, consider them together as our target, implement a new approach that without needing source code or programmer annotations, can defend against low-rate DoS attacks on the application layer
  9. Keywords:
  10. Denial of Service (DOS)Attack ; Web Security ; Software Vulnerabilities Analysis ; Resource Monitoring ; Application Layer ; Service Occupancy

 Digital Object List

 Bookmark

...see more