Netinfo Security ›› 2019, Vol. 19 ›› Issue (5): 84-90.doi: 10.3969/j.issn.1671-1122.2019.05.011

Previous Articles     Next Articles

Research on DDoS Attack Model Based on Web Application Layer

Zhibin YU1, Cheng MA1(), Siqi LI2, Miao WANG3   

  1. 1. Network Security Corps, Beijing Public Security Bureau, Beijing 100029, China
    2. Yunnan Police College, Kunming Yunnan 650223, China
    3. Unit 31436 of PLA, Shenyang Liaoning 110805, China
  • Received:2018-03-08 Online:2019-05-10 Published:2020-05-11

Abstract:

Due to the rapid development of cloud computing and IoT technology, unsafe network space resources are growing exponentially, leading to distributed denial of service attacks(DDoS) gradually becoming the most important threat to computer network security. In the process of attack and defense, the development trend of DDoS attack is changing from traditional single-line attack to platform attack. Currently, the research fields of Web application layer attacks mainly focus on traditional CC attacks, mutated CC attacks, HTTP slow attacks and new features attacks of Web Socket based on HTML5. On the basis of existing research, this paper makes a deep analysis of two kinds of DDoS attack models based on Web application layer, one is based on API, the other is based on Web backdoor. Both models are new attack modes based on Web characteristics and have typical characteristics. The research on this kind of attack model is helpful for network security researchers to propose corresponding defense methods and improve the ability of Web server to resist DDoS attacks.

Key words: Web application layer, DDoS attack, API, Web backdoor

CLC Number: