Behavior-based traffic differentiation (BTD) for defending against distributed denial of service (DDoS) attacks

N Ansari, Z Gao - US Patent 8,091,132, 2012 - Google Patents
Embodiments are directed toward a method for Behavior based Tra? ic Differentiation (BTD)
that initially receives incoming packets and performs tra? ic classi? cation to deter mine the …

Method and apparatus for preventing a denial of service (DOS) attack by selectively throttling TCP/IP requests

JE Belissent - US Patent 6,789,203, 2004 - Google Patents
According to the present invention, method, apparatus, and computer readable medium for
preventing a DoS attack without notifying the DoS attacker are disclosed. In one …

Detection of nonconforming network traffic flow aggregates for mitigating distributed denial of service attacks

MK Khandani, MA Shayman - US Patent 7,992,208, 2011 - Google Patents
An estimate of a portion of network traffic that is noncon forming to a communication
transmission control protocol is used to signal that a distributed denial of service attack may …

Providing a high-speed defense against distributed denial of service (DDoS) attacks

HHJ Chao, H Sun - US Patent 8,248,946, 2012 - Google Patents
Effective control of communications traffic, even under fast-changing DDoS attacks, might be
performed by (a) determining parameters of a leaky bucket using nominal communications …

Network protection for denial of service attacks

CL Schuba, IV Krsul, D Zamboni, EH Spafford… - US Patent …, 2004 - Google Patents
An active monitor detects and classifies messages transmit US PATENT DOCUMENTS ted
on a network. In one form, the monitor includes a routine 5,481,611 A 1/1996 Owens et …

Method and system for ddos traffic detection and traffic mitigation using flow statistics

HS Kim, KS Kang, KC Jeon, BT Kim… - US Patent App. 12 …, 2011 - Google Patents
Disclosed are a method and system for distributed denial of service (DDoS) attack detection
and traffic mitigation using flow statistics. The method for DDoS attack detection and traffic …

Method and apparatus for defending against SYN packet bandwidth attacks on TCP servers

D Lin - US Patent 7,219,228, 2007 - Google Patents
A SYN packet bandwidth Distributed Denial-of-Service (DDoS) attack is defended against by
intercepting and identifying SYN packets in a “DDoS gateway” advantageously positioned at …

Method and apparatus for defending against distributed denial of service attacks on TCP servers by TCP stateless hogs

D Lin - US Patent 7,404,210, 2008 - Google Patents
(57) ABSTRACT A Distributed Denial-of-Service (DDoS) attack by a TCP stateless hog is
defeated with use of an enhancement to the keep-alive mechanism provided by RFC 1122 …

Method and apparatus for defending distributed denial-of-service (DDoS) attack through abnormally terminated session

SY Yoon - US Patent 8,966,627, 2015 - Google Patents
Assistant Examiner—Theodore Parsons (57) ABSTRACT There are provided a method and
apparatus for defending a Distributed Denial-of-Service (DDoS) attack through abnor mally …

Automatic retraining of machine learning models to detect DDoS attacks

KT Reddy, DG Wing, BH Anderson… - US Patent 10,728,280, 2020 - Google Patents
In one embodiment, a device in a network receives an attack mitigation request regarding
traffic in the network. The device causes an assessment of the traffic, in response to the …