Detection of Domain Name Server Amplification Distributed Reflection Denial of Service Attacks Using Convolutional Neural Network-Based Image Deep Learning

被引:0
|
作者
Shin, Hoon [1 ]
Jeong, Jaeyeong [1 ,2 ]
Cho, Kyumin [3 ]
Lee, Jaeil [4 ]
Kwon, Ohjin [5 ]
Shin, Dongkyoo [1 ,2 ,6 ]
机构
[1] Sejong Univ, Dept Comp Engn, Seoul 05006, South Korea
[2] Sejong Univ, Dept Convergence Engn Intelligent Drones, Seoul 05006, South Korea
[3] Financial Secur Inst, Data Innovat Ctr, Yongin 16881, Gyeonggi Do, South Korea
[4] SmileGate, Seongnam Si 13493, Gyeonggi Do, South Korea
[5] Sejong Univ, Dept Elect Engn, Seoul 05006, South Korea
[6] Sejong Univ, Cyber Warfare Res Inst, Seoul 05006, South Korea
来源
ELECTRONICS | 2025年 / 14卷 / 01期
基金
新加坡国家研究基金会;
关键词
AI security; artificial intelligence; machine learning; deep learning; CNN; DDoS; DRDoS; DNS amplification DRDoS; image processing; image classification;
D O I
10.3390/electronics14010076
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Domain Name Server (DNS) amplification Distributed Reflection Denial of Service (DRDoS) attacks are a Distributed Denial of Service (DDoS) attack technique in which multiple IT systems forge the original IP of the target system, send a request to the DNS server, and then send a large number of response packets to the target system. In this attack, it is difficult to identify the attacker because of its ability to deceive the source, and unlike TCP-based DDoS attacks, it usually uses the UDP protocol, which has a fast communication speed and amplifies network traffic by simple manipulating options, making it one of the most widely used DDoS techniques. In this study, we propose a simple convolutional neural network (CNN) model that is designed to detect DNS amplification DRDoS attack traffic and has hyperparameters adjusted through experiments. As a result of evaluating the accuracy of the proposed CNN model for detecting DNS amplification DRDoS attacks, the average accuracy of the experiment was 0.9995, which was significantly better than several machine learning (ML) models in terms of performance. It also showed good performance compared to other deep learning (DL) models, and, in particular, it was confirmed that this simple CNN had the fastest time in terms of execution compared to other deep learning models by experimentation.
引用
收藏
页数:29
相关论文
共 50 条
  • [1] Optimization of vector convolutional deep neural network using binary real cumulative incarnation for detection of distributed denial of service attacks
    N. G. Bhuvaneswari Amma
    S. Selvakumar
    Neural Computing and Applications, 2022, 34 : 2869 - 2882
  • [2] Optimization of vector convolutional deep neural network using binary real cumulative incarnation for detection of distributed denial of service attacks
    Amma, N. G. Bhuvaneswari
    Selvakumar, S.
    NEURAL COMPUTING & APPLICATIONS, 2022, 34 (04) : 2869 - 2882
  • [3] A Comprehensive Review of Deep Learning Techniques for the Detection of (Distributed ) Denial of Service Attacks
    Malliga, S.
    Nandhini, P. S.
    Kogilavani, S. V.
    INFORMATION TECHNOLOGY AND CONTROL, 2022, 51 (01): : 180 - 215
  • [4] A distributed framework for distributed denial-of-service attack detection in internet of things environments using deep learning
    Silas W.A.
    Nderu L.
    Ndirangu D.
    International Journal of Web Engineering and Technology, 2024, 19 (01) : 67 - 87
  • [5] Distributed Denial of Service (DDoS) Attacks Detection Using Machine Learning Prototype
    Hoyos Ll, Manuel S.
    Isaza E, Gustavo A.
    Velez, Jairo I.
    Castillo O, Luis
    DISTRIBUTED COMPUTING AND ARTIFICIAL INTELLIGENCE, (DCAI 2016), 2016, 474 : 33 - 41
  • [6] DeepSecure: Detection of Distributed Denial of Service Attacks on 5G Network Slicing-Deep Learning Approach
    Kuadey, Noble Arden Elorm
    Maale, Gerald Tietaa
    Kwantwi, Thomas
    Sun, Guolin
    Liu, Guisong
    IEEE WIRELESS COMMUNICATIONS LETTERS, 2022, 11 (03) : 488 - 492
  • [7] Attention-based deep learning approach for detecting IoT botnetbased distributed denial of service attacks
    Al-Jarah, Maha
    Al-Shurman, Mohammad
    Al-Duwairi, Basheer
    JOURNAL OF DISCRETE MATHEMATICAL SCIENCES & CRYPTOGRAPHY, 2024, 27 (06) : 1785 - 1815
  • [8] Deep learning in distributed denial-of-service attacks detection method for Internet of Things networks
    Aswad, Firas Mohammed
    Ahmed, Ali Mohammed Saleh
    Alhammadi, Nafea Ali Majeed
    Khalaf, Bashar Ahmad
    Mostafa, Salama A.
    JOURNAL OF INTELLIGENT SYSTEMS, 2023, 32 (01)
  • [9] Distributed denial of service attack detection using autoencoder and deep neural networks
    Catak, Ferhat Ozgur
    Mustacoglu, Ahmet Fatih
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2019, 37 (03) : 3969 - 3979
  • [10] Distributed Denial of Service Attack Detection in Network Traffic Using Deep Learning Algorithm
    Ramzan, Mahrukh
    Shoaib, Muhammad
    Altaf, Ayesha
    Arshad, Shazia
    Iqbal, Faiza
    Castilla, Angel Kuc
    Ashraf, Imran
    SENSORS, 2023, 23 (20)