STARM · NW-10 · NETWORK

DDoS on Ground Infrastructure

Back to the STARM matrix

STARMCatalog entries from the DIPS Threat Inventory. The paper cites that dataset and does not use this name.

Overwhelming control centers with traffic.

Severity in the dataset5/10

Not the paper’s H/M/L.

Target
Protocol / Availability
Layer in the inventory
Network Layer
Mitigation
Cloud-based DDoS mitigation and firewalls.
How the inventory says to fix it
AI: Intelligent traffic scrubbing to distinguish bots from legitimate users based on request behavior.
Quick fix
Traffic filtering
ML approaches named
Gradient Boosting, Random Forest, CNN/LSTM hybrid models, Isolation Forest, Adaptive thresholding with ML
Methodology
Sudden traffic spikes, abnormal request distribution, resource exhaustion patterns
Handler role
SOC Engineer
Stage
Operation
Standard named
NIST SP 800-189
Status in the inventory
Reduced

STARMCatalog entries from the DIPS Threat Inventory. The paper cites that dataset and does not use this name.

Related in the matrix

STARMCatalog entries from the DIPS Threat Inventory. The paper cites that dataset and does not use this name.

Connection recorded in the inventory

Uplink Jamming