Publications

A taxonomy of DDoS attacks and DDoS defense mechanisms

Abstract

Distributed denial-of-service (DDoS) is a rapidly growing problem. The multitude and variety of both the attacks and the defense approaches is overwhelming. This paper presents two taxonomies for classifying attacks and defenses, and thus provides researchers with a better understanding of the problem and the current solution space. The attack classification criteria was selected to highlight commonalities and important features of attack strategies, that define challenges and dictate the design of countermeasures. The defense taxonomy classifies the body of existing DDoS defenses based on their design decisions; it then shows how these decisions dictate the advantages and deficiencies of proposed solutions.

Date
January 1, 1970
Authors
Jelena Mirkovic, Janice Martin, Peter Reiher
Journal
ACM SIGCOMM Computer Communication Review
Volume
34
Issue
2
Pages
39-53