{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,13]],"date-time":"2025-11-13T18:29:55Z","timestamp":1763058595053,"version":"3.41.2"},"reference-count":36,"publisher":"Wiley","issue":"1","license":[{"start":{"date-parts":[[2021,7,8]],"date-time":"2021-07-08T00:00:00Z","timestamp":1625702400000},"content-version":"vor","delay-in-days":188,"URL":"http:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"DOI":"10.13039\/501100006004","name":"Tohoku University","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100006004","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100004479","name":"Natural Science Foundation of Jiangxi Province","doi-asserted-by":"publisher","award":["20192ACBL21031"],"award-info":[{"award-number":["20192ACBL21031"]}],"id":[{"id":"10.13039\/501100004479","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["61962026"],"award-info":[{"award-number":["61962026"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["onlinelibrary.wiley.com"],"crossmark-restriction":true},"short-container-title":["Wireless Communications and Mobile Computing"],"published-print":{"date-parts":[[2021,1]]},"abstract":"<jats:p>The multipath TCP (MPTCP) enables multihomed mobile devices to realize multipath parallel transmission, which greatly improves the transmission performance of the mobile communication network. With the rapid development of all kinds of emerging technologies, network attacks have shown a trend of development with many types and rapid updates. Among them, low\u2010rate distributed denial of service (LDDoS) attacks are considered to be one of the most threatening issues in the field of network security. In view of the current research status, by using the network simulation software NS2, this paper first compares and analyzes the throughput and delay performance of the MPTCP transmission system under LDDoS attacks and, further, conducts simulation experiments and analysis on the queue occupancy rate of the LDDoS attack flow to extract the basic attack characteristics of the LDDoS attacks. The experimental results show that the LDDoS attacks will have a major destructive effect on the throughput performance and delay performance of the MPTCP transmission system, resulting in a decrease in the robustness of the transmission system. By analyzing and comparing the occupancy rate of the LDDoS attack flow in the MPTCP transmission system, it can be concluded that (1) the occupancy rate of the LDDoS scattered pulse traffic sent by each puppet machine changes slightly, and (2) the occupancy rate of LDDoS attack data flow is much greater than that of ordinary TCP data flow.<\/jats:p>","DOI":"10.1155\/2021\/2264187","type":"journal-article","created":{"date-parts":[[2021,7,8]],"date-time":"2021-07-08T17:51:28Z","timestamp":1625766688000},"update-policy":"https:\/\/doi.org\/10.1002\/crossmark_policy","source":"Crossref","is-referenced-by-count":11,"title":["Extracting Low\u2010Rate DDoS Attack Characteristics: The Case of Multipath TCP\u2010Based Communication Networks"],"prefix":"10.1155","volume":"2021","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-5472-7211","authenticated-orcid":false,"given":"Gang","family":"Lei","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9488-8527","authenticated-orcid":false,"given":"Lejun","family":"Ji","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2664-1637","authenticated-orcid":false,"given":"Ruiwen","family":"Ji","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6557-6559","authenticated-orcid":false,"given":"Yuanlong","family":"Cao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2728-5619","authenticated-orcid":false,"given":"Xun","family":"Shao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5470-1203","authenticated-orcid":false,"given":"Xin","family":"Huang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"311","published-online":{"date-parts":[[2021,7,8]]},"reference":[{"key":"e_1_2_8_1_2","doi-asserted-by":"publisher","DOI":"10.1109\/TMM.2018.2879748"},{"key":"e_1_2_8_2_2","doi-asserted-by":"publisher","DOI":"10.1109\/TNET.2017.2701153"},{"key":"e_1_2_8_3_2","doi-asserted-by":"publisher","DOI":"10.1145\/2043164.2018467"},{"key":"e_1_2_8_4_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2018.02.005"},{"key":"e_1_2_8_5_2","doi-asserted-by":"publisher","DOI":"10.1109\/JSAC.2019.2933761"},{"key":"e_1_2_8_6_2","doi-asserted-by":"publisher","DOI":"10.1109\/JSAC.2019.2904358"},{"key":"e_1_2_8_7_2","first-page":"995","article-title":"LDDoS attack detection by using ant colony optimization algorithms","volume":"32","author":"Chen H.-H.","year":"2016","journal-title":"Journal of Information Science and Engineering"},{"key":"e_1_2_8_8_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2021.3056482"},{"key":"e_1_2_8_9_2","doi-asserted-by":"crossref","unstructured":"WuZ. MaL. WangM. YueM. andWangL. Research on time synchronization and flow aggregation in LDDoS attack based on crosscorrelation Proceedings of 2012 IEEE 11th International Conference on Trust Security and Privacy in Computing and Communications June 2012 Liverpool UK 25\u201332 https:\/\/doi.org\/10.1109\/trustcom.2012.240 2-s2.0-84868107079.","DOI":"10.1109\/TrustCom.2012.240"},{"key":"e_1_2_8_10_2","doi-asserted-by":"crossref","unstructured":"WuZ. WangC. andZengH. Research on the comparison of flood DDoS and low-rate DDoS Proceedings of 2011 International Conference on Multimedia Technology July 2011 Hangzhou China 5503\u20135506 https:\/\/doi.org\/10.1109\/icmt.2011.6002141 2-s2.0-80052950140.","DOI":"10.1109\/ICMT.2011.6002141"},{"key":"e_1_2_8_11_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.102107"},{"key":"e_1_2_8_12_2","doi-asserted-by":"publisher","DOI":"10.1007\/s13369-018-3236-9"},{"key":"e_1_2_8_13_2","doi-asserted-by":"crossref","unstructured":"KieuM. V. NguyenD. T. andNguyenT. T. A way to estimate TCP throughput under low-rate DDoS attacks: one TCP flow Proceedings of 2020 RIVF International Conference on Computing and Communication Technologies (RIVF) October 2020 Ho Chi Minh City Vietnam 1\u20138 https:\/\/doi.org\/10.1109\/rivf48685.2020.9140777.","DOI":"10.1109\/RIVF48685.2020.9140777"},{"key":"e_1_2_8_14_2","doi-asserted-by":"publisher","DOI":"10.1109\/TPDS.2019.2942591"},{"key":"e_1_2_8_15_2","doi-asserted-by":"publisher","DOI":"10.1002\/sec.1302"},{"key":"e_1_2_8_16_2","first-page":"95","article-title":"An abnormal network flow feature sequence prediction approach for DDoS attacks detection in big data environment","volume":"55","author":"Cheng J.","year":"2018","journal-title":"Cmc-Computers Materials & Continua"},{"key":"e_1_2_8_17_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2018.07.017"},{"key":"e_1_2_8_18_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.comcom.2017.02.003"},{"key":"e_1_2_8_19_2","doi-asserted-by":"publisher","DOI":"10.1049\/iet-ifs.2018.5097"},{"key":"e_1_2_8_20_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.dcan.2020.04.002"},{"key":"e_1_2_8_21_2","doi-asserted-by":"publisher","DOI":"10.1109\/access.2020.2967478"},{"key":"e_1_2_8_22_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2019.12.034"},{"key":"e_1_2_8_23_2","doi-asserted-by":"publisher","DOI":"10.1007\/s11036-019-01506-1"},{"key":"e_1_2_8_24_2","doi-asserted-by":"crossref","unstructured":"SiracusanoM. ShiaelesS. andGhitaB. Detection of LDDoS attacks based on TCP connection parameters 2018 Global Information Infrastructure and Networking Symposium (GIIS) October 2018 Thessaloniki Greece 1\u20136 https:\/\/doi.org\/10.1109\/giis.2018.8635701 2-s2.0-85062868681.","DOI":"10.1109\/GIIS.2018.8635701"},{"key":"e_1_2_8_25_2","doi-asserted-by":"crossref","unstructured":"LiuZ. YinX. YangR. andDongA. Early detection of LDDoS attacks in IOT utilizing locality sensitive incremental TSVM method 2021 23rd International Conference on Advanced Communication Technology (ICACT) February 2021 PyeongChang Korea 194\u2013199 https:\/\/doi.org\/10.23919\/icact51234.2021.9371008.","DOI":"10.23919\/ICACT51234.2021.9371008"},{"key":"e_1_2_8_26_2","doi-asserted-by":"crossref","unstructured":"ZhangN. JaafarF. andMalikY. Low-rate DoS attack detection using PSD based entropy and machine learning 2019 6th IEEE International Conference on Cyber Security and Cloud Computing (CSCloud)\/2019 5th IEEE International Conference on Edge Computing and Scalable Cloud (EdgeCom) June 2019 Paris France 59\u201362 https:\/\/doi.org\/10.1109\/cscloud\/edgecom.2019.00020 2-s2.0-85074142814.","DOI":"10.1109\/CSCloud\/EdgeCom.2019.00020"},{"key":"e_1_2_8_27_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2017.2731899"},{"key":"e_1_2_8_28_2","doi-asserted-by":"publisher","DOI":"10.1109\/TMC.2015.2497238"},{"key":"e_1_2_8_29_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2017.2681684"},{"key":"e_1_2_8_30_2","doi-asserted-by":"publisher","DOI":"10.1109\/LWC.2019.2948163"},{"key":"e_1_2_8_31_2","doi-asserted-by":"publisher","DOI":"10.1109\/TNET.2014.2300140"},{"key":"e_1_2_8_32_2","doi-asserted-by":"publisher","DOI":"10.1109\/TNET.2020.2970032"},{"key":"e_1_2_8_33_2","doi-asserted-by":"publisher","DOI":"10.1109\/TBC.2016.2590819"},{"key":"e_1_2_8_34_2","doi-asserted-by":"publisher","DOI":"10.1109\/TNET.2018.2884791"},{"key":"e_1_2_8_35_2","first-page":"71","article-title":"Attack simulation and signature extraction of low-rate DDoS","volume":"29","author":"Wu Z.","year":"2008","journal-title":"Journal on Communications"},{"key":"e_1_2_8_36_2","doi-asserted-by":"publisher","DOI":"10.3390\/s20226573"}],"container-title":["Wireless Communications and Mobile Computing"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/downloads.hindawi.com\/journals\/wcmc\/2021\/2264187.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/downloads.hindawi.com\/journals\/wcmc\/2021\/2264187.xml","content-type":"application\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/onlinelibrary.wiley.com\/doi\/pdf\/10.1155\/2021\/2264187","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,8,7]],"date-time":"2024-08-07T13:29:02Z","timestamp":1723037342000},"score":1,"resource":{"primary":{"URL":"https:\/\/onlinelibrary.wiley.com\/doi\/10.1155\/2021\/2264187"}},"subtitle":[],"editor":[{"given":"Longzhe","family":"Han","sequence":"additional","affiliation":[],"role":[{"role":"editor","vocabulary":"crossref"}]}],"short-title":[],"issued":{"date-parts":[[2021,1]]},"references-count":36,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2021,1]]}},"alternative-id":["10.1155\/2021\/2264187"],"URL":"https:\/\/doi.org\/10.1155\/2021\/2264187","archive":["Portico"],"relation":{},"ISSN":["1530-8669","1530-8677"],"issn-type":[{"type":"print","value":"1530-8669"},{"type":"electronic","value":"1530-8677"}],"subject":[],"published":{"date-parts":[[2021,1]]},"assertion":[{"value":"2021-04-25","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2021-06-26","order":2,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2021-07-08","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}],"article-number":"2264187"}}