Cloud Threat Detection: Big Data Based Security Analytics Approach
DOI:
https://doi.org/10.61841/80y40148Keywords:
Cloud Threats, Big Data, Security Analysis, Machine learning, Graph Based Event Correlation,, Cloud infrastructure, Random ForestAbstract
The cloud infrastructure consists of VMs (Virtual Machines) and hosting hardware which creates multiple instances of resources defined by the software. The VMs manage, support and monitor the software defined multi-instance framework. The potential of system to perform real time resource scaling has led to widespread implementation of virtualized infrastructure for cloud computing. This has caused virtual infrastructure to become a tempting target for cyber attackers to launch attacks and to gain illegal access. This paper analyses the threats posed by cyber criminals and the development of threat detection methods over time this gives us insight on what are the current requirements of security researchers to make the system more efficient and accurate to detect threats in real time. The paper also discusses about leveraging technologies like big data and machine learning which can handle huge amount unstructured data and are designed to run on a distributed network.
Downloads
References
1. W. Jansen and T. Grance, “Guidelines on security and privacy in public cloud computing,” NIST Spec. Publ. 800–144, National Institute of Standards and Technology, Gaithersburg, MD 20899, Dec. 2011.
2. T. Mahmood and U. Afzal, “Security analytics: Big data analytics for cybersecurity: A review of trends, techniques and tools,” in Proc. 2nd Nat. Conf. Inf. Assurance, 2013, pp. 129–134.
3. Dan Gonzales, Jeremy M. Kaplan, Evan Saltzman, Zev Winkelman and Dulani Woods, “Cloud Trust – a Security Assessment Model for Infrastructure as a Service (IaaS) Clouds”, IEEE Transactions on Cloud Computing ( Volume: 5 , Issue: 3 , July-Sept. 1 2017 )
4. G. Somani, M.S. Gaur, D. Sanghi, and M. Conti, “DDoS Attacks in Cloud Computing: Collateral Damage to Non-targets,” Computer Networks, vol. 109, no. 2, 2016, pp. 157–171.
5. Amey Shevtekar, and Nirvan Ansari, “Is it congestion or a DDoS attack?”, IEEE Communications Letters ( Volume: 13 , Issue: 7 , July 2009 )
6. Shui Yu, Wanlei Zhou, Weijia Jia, Song Guo, Yong Xiang and Feilong Tang, “Discriminating DDoS Attacks from Flash Crowds Using Flow Correlation Coefficient”, IEEE Transactions on Parallel and Distributed Systems ( Volume: 23 , Issue: 6 , June 2012 )
7. S. Yu et al., “Discriminating DDoS attacks from flash crowds using flow correlation coefficient,” IEEETrans. Parallel Distrib. Syst., vol. 23, no. 6, pp. 1073–1080, Jun. 2012.
8. Nazrul Hoque, Dhruba K. Bhattacharyya, and Jugal K. Kalita, “Botnet in DDoS Attacks: Trends and Challenges”, IEEE Communication Surveys & Tutorials, Vol. 17, No. 4, Fourth Quarter 2015
9. Bill McCarty, “Botnets: Big and Bigger”, IEEE Security & Privacy, vol. 1, no. , pp. 87-90, 2003. doi:10.1109/MSECP.2003.1219079
10. Thu Yein Win and Quentin Mair, “Big Data Based Security Analytics Approach For Protecting Virtualized Infrastructure in Cloud Computing”, IEEE Transactions On Big Data, Vol. 4, No. 1, January-March 2018
11. K. Singh, S. C. Guntuku, A. Thakur, and C. Hota, “Big data analytics framework for peer-to-peer botnet detection using random forests,” Inf. Sci., vol. 278, pp. 488–497, 2014.
12. Tao Qin , Yuli Gao, Lingyan Wei, Zhaoli Liu and Chenxu Wang, “Potential threats mining methods based on correlation analysis of multi-type logs”, IET Networks ( Volume: 7 , Issue: 5 , 9 2018 )
13. Rohan Doshi, Noah Apthorpe and Nick Feamster, “Machine Learning DDoS Detection for Consumer Internet of Things Devices”, 2018 IEEE Symposium on Security and Privacy Workshops
14. Natalija Vlajic and Daiwei Zhou, “IoT as a Land of Opportunity for DDoS Hackers”, IEEE Computer Society, Computer ( Volume: 51 , Issue: 7 , July 2018 )
15. Rémi Cogranne, Guillaume Doyen, Nisrine Ghadban, and Badis Hammi, “Detecting Botclouds at Large Scale: A Decentralized and Robust Detection Method for Multi-Tenant Virtualized Environments”, IEEE Transactions on Network and Service Management ( Volume: 15 , Issue: 1 , March 2018 )
16. Andrew Ross, “Cybercrime on the rise: DDoS attack volumes have trebled in past year, says study”, https://www.information-age.com/cyber-crime-on-the-rise-ddos-attack-123478977/
17. DDoS Report, Link 11, https://www.link11.com/en/ddos-report/
18. Muyowa Mutemwa and Francois Mouton, “Cyber security threats and mitigation techniques for multifunctional devices”, 2018 Conference on Information Communications Technology and Society (ICTAS)
19. Vasco Samuel Carvalho, Maria João Polidoro and João Paulo Magalhães, “OwlSight: Platform for Real-Time Detection and Visualization of Cyber Threats”, 2016 IEEE 2nd International Conference on Big Data Security on Cloud (BigDataSecurity), IEEE International Conference on High Performance and Smart Computing (HPSC), and IEEE International Conference on Intelligent Data and Security (IDS)
20. Ashwini Mujumdar, Gayatri Masiwal and Dr. B. B. Meshram, “Analysis of Signature-Based and Behavior-Based Anti-Malware Approaches”, International Journal of Advanced Research in Computer Engineering and Technology (IJARCET) Volume 2, Issue 6, June 2013
21. A. Lioy, G. Gardikis, B. Gaston, L. Jacquin, M. De Benedictis, Y. Angelopoulos and C. Xylouris, “NFV-based network protection: the SHIELD approach”, 2017 IEEE Conference on Network Function Virtualisation and Software Defined Networks (NFV-SDN)
Downloads
Published
Issue
Section
License

This work is licensed under a Creative Commons Attribution 4.0 International License.
You are free to:
- Share — copy and redistribute the material in any medium or format for any purpose, even commercially.
- Adapt — remix, transform, and build upon the material for any purpose, even commercially.
- The licensor cannot revoke these freedoms as long as you follow the license terms.
Under the following terms:
- Attribution — You must give appropriate credit , provide a link to the license, and indicate if changes were made . You may do so in any reasonable manner, but not in any way that suggests the licensor endorses you or your use.
- No additional restrictions — You may not apply legal terms or technological measures that legally restrict others from doing anything the license permits.
Notices:
You do not have to comply with the license for elements of the material in the public domain or where your use is permitted by an applicable exception or limitation .
No warranties are given. The license may not give you all of the permissions necessary for your intended use. For example, other rights such as publicity, privacy, or moral rights may limit how you use the material.
