- 专利标题: Identifying a potential DDOS attack using statistical analysis
-
申请号: US16193167申请日: 2018-11-16
-
公开(公告)号: US10511625B2公开(公告)日: 2019-12-17
- 发明人: Robert Smith , Shawn Marck
- 申请人: Level 3 Communications, LLC
- 申请人地址: US CO Broomfield
- 专利权人: Level 3 Communications, LLC
- 当前专利权人: Level 3 Communications, LLC
- 当前专利权人地址: US CO Broomfield
- 主分类号: H04L29/06
- IPC分类号: H04L29/06
摘要:
Embodiments can identify requests that may be tied to a DDOS attack. For example, the primary identifiers (e.g., a source address) of requests for a network resource (e.g., an entire website or a particular element of the website) can be tracked. In one embodiment, a statistical analysis of how often a particular source address (or other primary identifier) normally makes a request can be used to identify source addresses that make substantially more requests. A normal amount can correspond to an average number of request that a source address makes. According to some embodiments, a system can use statistical analysis methods on various request data in web server logs to identify potential attacks and send data concerned potential attacks to an HBA system for further analysis.
公开/授权文献
信息查询