|
There are four major research directions I am interested in: distributed
denial-of-service (DDoS) attacks, Internet worms, botnets and IP
spoofing.
I have worked on the following research projects, together with
my students and collaborators, for the past four years:
-
DefCOM project works on designing distributed defenses against DDoS
attacks. This work was funded by the NSF's Cyber Trust program.
- DDoS benchmarks project works on designing a common
evaluation methodology for DDoS defenses. This work was funded by the
HSARPA's Cyber Security program.
- PAWS project builds a
distributed, realistic and large-scale simulator of Internet
events. The simulator currently replicates Internet worm spread events
with high fidelity.
-
Internet Credit Report project is focused on building profiles of each
Internet host's communication activity and using these profiles to
detect anomalous hosts.
The following projects are at early development stages:
-
Clouseau and RAD projects
develop novel IP spoofing defenses. This work is funded by the NSF
Cyber Trust program. We are also
working on a comparative evaluation of current IP spoofing defenses.
-
User behavior modeling project
develops novel defenses against flash-crowd attacks via
application-level modeling of human user actions.
-
Self-healing networks project
develops mechanisms for network health monitoring, problem detection
and automated recovery.
|