Unknown DDoS Attack Detection with Fuzzy C-Means Clustering and Spatial Location Constraint Prototype Loss

被引:4
作者
Nguyen, Thanh-Lam [1 ]
Kao, Hao [1 ]
Nguyen, Thanh-Tuan [2 ]
Horng, Mong-Fong [1 ]
Shieh, Chin-Shiuh [1 ]
机构
[1] Natl Kaohsiung Univ Sci & Technol, Dept Elect Engn, Kaohsiung 807618, Taiwan
[2] Nha Trang Univ, Dept Elect & Automat Engn, Nha Trang 650000, Vietnam
来源
CMC-COMPUTERS MATERIALS & CONTINUA | 2024年 / 78卷 / 02期
关键词
Cybersecurity; DDoS; unknown attack detection; machine learning; deep learning; incremental learning; convolutional neural networks (CNN); open-set recognition (OSR); spatial location constraint prototype loss; fuzzy c-means; CICIDS2017; CICDDoS2019;
D O I
10.32604/cmc.2024.047387
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Since its inception, the Internet has been rapidly evolving. With the advancement of science and technology and the explosive growth of the population, the demand for the Internet has been on the rise. Many applications in education, healthcare, entertainment, science, and more are being increasingly deployed based on the internet. Concurrently, malicious threats on the internet are on the rise as well. Distributed Denial of Service (DDoS) attacks are among the most common and dangerous threats on the internet today. The scale and complexity of DDoS attacks are constantly growing. Intrusion Detection Systems (IDS) have been deployed and have demonstrated their effectiveness in defense against those threats. In addition, the research of Machine Learning (ML) and Deep Learning (DL) in IDS has gained effective results and significant attention. However, one of the challenges when applying ML and DL techniques in intrusion detection is the identification of unknown attacks. These attacks, which are not encountered during the system's training, can lead to misclassification with significant errors. In this research, we focused on addressing the issue of Unknown Attack Detection, combining two methods: Spatial Location Constraint Prototype Loss (SLCPL) and Fuzzy C -Means (FCM). With the proposed method, we achieved promising results compared to traditional methods. The proposed method demonstrates a very high accuracy of up to 99.8% with a low false positive rate for known attacks on the Intrusion Detection Evaluation Dataset (CICIDS2017) dataset. Particularly, the accuracy is also very high, reaching 99.7%, and the precision goes up to 99.9% for unknown DDoS attacks on the DDoS Evaluation Dataset (CICDDoS2019) dataset. The success of the proposed method is due to the combination of SLCPL, an advanced Open -Set Recognition (OSR) technique, and FCM, a traditional yet highly applicable clustering technique. This has yielded a novel method in the field of unknown attack detection. This further expands the trend of applying DL and ML techniques in the development of intrusion detection systems and cybersecurity. Finally, implementing the proposed method in real -world systems can enhance the security capabilities against increasingly complex threats on computer networks.
引用
收藏
页码:2181 / 2205
页数:25
相关论文
共 50 条
  • [41] Clustering System Group Customers through Fuzzy C-Means Clustering
    Hasanpour, Yaser
    Nemati, Shima
    Tavoli, Reza
    [J]. 2018 4TH IRANIAN CONFERENCE ON SIGNAL PROCESSING AND INTELLIGENT SYSTEMS (ICSPIS), 2018, : 161 - 165
  • [42] k-means and fuzzy c-means fusion for object clustering
    Heni, Ashraf
    Jdey, Imen
    Ltifi, Hela
    [J]. 2022 8TH INTERNATIONAL CONFERENCE ON CONTROL, DECISION AND INFORMATION TECHNOLOGIES (CODIT'22), 2022, : 177 - 182
  • [43] Electrical fuzzy C-means: A new heuristic fuzzy clustering algorithm
    Mehdizadeh, Esmaeil
    Golabzaei, Amir
    [J]. COGENT ENGINEERING, 2016, 3 (01):
  • [44] Edge detection in MRI brain tumor images based on fuzzy C-means clustering
    Zotin, Alexander
    Simonov, Konstantin
    Kurako, Mikhail
    Hamad, Yousif
    Kirillova, Svetlana
    [J]. KNOWLEDGE-BASED AND INTELLIGENT INFORMATION & ENGINEERING SYSTEMS (KES-2018), 2018, 126 : 1261 - 1270
  • [45] LapEFCM: overlapping community detection using laplacian eigenmaps and fuzzy C-means clustering
    Hasan A.
    Kamal A.
    [J]. International Journal of Information Technology, 2022, 14 (6) : 3133 - 3144
  • [46] Clustering of COVID-19 data for knowledge discovery using c-means and fuzzy c-means
    Afzal, Asif
    Ansari, Zahid
    Alshahrani, Saad
    Raj, Arun K.
    Kuruniyan, Mohamed Saheer
    Saleel, C. Ahamed
    Nisar, Kottakkaran Sooppy
    [J]. RESULTS IN PHYSICS, 2021, 29
  • [47] A study on fuzzy C-means clustering-based systems in automatic spike detection
    Inan, Z. Hilal
    Kuntalp, Mehmet
    [J]. COMPUTERS IN BIOLOGY AND MEDICINE, 2007, 37 (08) : 1160 - 1166
  • [48] Clustering Algorithm Based on Spatial Shadowed Fuzzy C-means and I-Ching Operators
    Zhang, Tong
    Chen, Long
    Chen, C. L. Philip
    [J]. INTERNATIONAL JOURNAL OF FUZZY SYSTEMS, 2016, 18 (04) : 609 - 617
  • [49] Carotid artery image segmentation using modified spatial fuzzy c-means and ensemble clustering
    Hassan, Mehdi
    Chaudhry, Asmatullah
    Khan, Asifullah
    Kim, Jin Young
    [J]. COMPUTER METHODS AND PROGRAMS IN BIOMEDICINE, 2012, 108 (03) : 1261 - 1276
  • [50] Clustering Algorithm Based on Spatial Shadowed Fuzzy C-means and I-Ching Operators
    Tong Zhang
    Long Chen
    C. L. Philip Chen
    [J]. International Journal of Fuzzy Systems, 2016, 18 : 609 - 617