SIDN / spin

SPIN Core Software
https://spin.sidnlabs.nl
GNU General Public License v2.0
77 stars 9 forks source link

Add src/tools/peak-detection/ #56

Closed ElmerLastdrager closed 5 years ago

ElmerLastdrager commented 5 years ago

This adds a proof-of-concept of anomaly detection to SPIN. This version is rather simple and only detects peaks, based on the traffic history of the IoT device. It only takes outgoing traffic into account, focusing on DDoS attacks.