Alemayehu, Mikiyas, Araujo, Istteffanny Isloure and Chrysikos, Alexandros (2025) Detection and mitigation of DoS/DDoS attacks: a threshold-based lightweight security framework for edge systems. In: 13th International Conference on Frontiers of Intelligent Computing: Theory and Applications (FICTA-2025), 6-7 June 2025, London Metropolitan University, London (UK) / Online. (In Press)
The rapid evolution of cyber threats such as distributed denial of service (DoS) and distributed denial of service (DDoS) attacks have become a ubiquitous concern within contemporary information technology landscape. This paper presents a comprehensive framework for detection and mitigation of DoS/DDoS attacks by particularly focusing on SYN and ICMP flood variants in resource constrained edge systems. The detection module acts as the analytical core, using traffic data to identify anomalies, which achieves a detection accuracy of 98.0%. as highlighted in Eq. 1. This component also demonstrates a low false positive rate (FPR) which is 2.91 % as indicated in Eq. 2 maintaining the integrity of the system during normal traffic spikes. The Mitigation module swiftly responds to identified threat by blocking malicious IP addresses in real time. This takes 20 to 50 seconds (s) after detection which minimize potential service disruption. The system incorporates real time monitoring capabilities and automated mitigation response. This approach highlights significant promise in enhancing network security resilience against DoS/DDoS attacks that have shown a significant increase compared to previous years.
Restricted to Repository staff only until 15 September 2026.
Download (538kB) | Request a copy
![]() |
View Item |
Lists
Lists