当无线传感器网络(WSN)遭受分布式拒绝服务(DDoS)攻击时,攻击者会传送大量攻击数据包到受害主机,使其迅速消耗资源而无法正常运作,最终造成网络瘫痪。为了检测针对资源有限的WSN的DDoS攻击,基于传统网络的概率包标记算法提出一个改进概率包标记算法,使其适应在WSN中检测DDoS攻击。改进的算法减少了重建攻击路径所需的攻击数据包,从而减少WSN的资源消耗,弥补了WSN资源有限的缺陷。
Traditional probabilistic packet marking algorithm can not fit to detect DDoS in wireless sensor networks (WSNs), because WSNs have resource constraints. A DDoS attack may result in network disasters due to the energy exhaustion of the nodes along the attacking path. This paper presented a new extended probabilistic packet marking algorithm to detect DDoS in WSNs which enabled to reconstruct attacking paths with fewer collected packets under multiple attacks. The effectiveness of the proposed algorithm was demonstrated in the simulate studies.