This research is to analyze the state of art Distributed Denial of Service Attacks (DDoS) for their current and future complex capabilities and researching a complete defense strategy that use a complete flexible combination of DDOS defense mechanisms based on their strengths and weaknesses. The proposed defense strategy will then be used to develop an in-the-cloud defense system targeted at large scale attacks using the powerful computer resources of Cloud Computing.

This research is divided into 2 sections:
In the first section of this research, I will conduct an analysis on the anatomy of increasing intensity, complexity, and sophistication large-scale DDoS attacks targeting Internet Service Providers. DDoS attacks are challenging to defend against, not only because of their magnitude, but also because of the variety of attacks they bring to bear.

In the second section of this research, I have proposed to develop a complete DDoS Defense Strategy using the power of cloud computing which provides attack prevention, detection, source identification and reaction against all types of DDOS attacks. The proposed strategy will use a complete flexible combination of DDOS defense mechanisms. As most of the current available defense mechanisms are only effective in resolving some types of DDOS attacks and with significant rate of false positives, thus the proposed defense strategy will be a combination of various defense mechanisms that based on their strengths and weaknesses in a flexible manner according to the various behaviors of DDOS attacks.

