ABSTRACT

Distributed Denial of Service (DDoS) attacks (Jaber et al., 2015) use a large number of computers distributed in different locations to simultaneously send a large number of packets in a coordinated fashion to a target host, exceeding the capacity of the target host and constantly consuming network bandwidth and/or system resources of the target host to make it incapable of providing normal service, even causing its paralysis. Owing to their power, difficulty in tracking, and low cost, DDoS attacks have become frequent in recent years. On 21 October 2016, the most important Domain Name System (DNS) service provider in the United States, Dyn, suffered a large-scaleDDoS attack for several hours. During that time, hundreds of sites, such as Twitter, Spotify, Netflix, GitHub,Airbnb,Visa and CNN, were unable to be accessed or logged into, and people’s lives were seriously affected.