Detection of Unknown DDoS Attack Using Convolutional Neural Networks Featuring Geometrical Metric

被引:11
|
作者
Shieh, Chin-Shiuh [1 ]
Nguyen, Thanh-Tuan [1 ,2 ]
Horng, Mong-Fong [1 ,3 ]
机构
[1] Natl Kaohsiung Univ Sci & Technol, Dept Elect Engn, Kaohsiung 807618, Taiwan
[2] Nha Trang Univ, Dept Elect & Automat Engn, Nha Trang 650000, Vietnam
[3] Kaohsiung Medial Univ, PhD Program Biomed Engn, Kaohsiung 80708, Taiwan
关键词
cybersecurity; distributed denial-of-service (DDoS); convolutional neural networks (CNN); geometrical metric; incremental learning; open-set recognition (OSR); machine learning; deep learning; unknown attack; CICIDS2017; CICDDoS2019; INTRUSION DETECTION;
D O I
10.3390/math11092145
中图分类号
O1 [数学];
学科分类号
0701 ; 070101 ;
摘要
DDoS attacks remain a persistent cybersecurity threat, blocking services to legitimate users and causing significant damage to reputation, finances, and potential customers. For the detection of DDoS attacks, machine learning techniques such as supervised learning have been extensively employed, but their effectiveness declines when the framework confronts patterns exterior to the dataset. In addition, DDoS attack schemes continue to improve, rendering conventional data model-based training ineffectual. We have developed a novelty open-set recognition framework for DDoS attack detection to overcome the challenges of traditional methods. Our framework is built on a Convolutional Neural Network (CNN) construction featuring geometrical metric (CNN-Geo), which utilizes deep learning techniques to enhance accuracy. In addition, we have integrated an incremental learning module that can efficiently incorporate novel unknown traffic identified by telecommunication experts through the monitoring process. This unique approach provides an effective solution for identifying and alleviating DDoS. The module continuously improves the model's performance by incorporating new knowledge and adapting to new attack patterns. The proposed model can detect unknown DDoS attacks with a detection rate of over 99% on conventional attacks from CICIDS2017. The model's accuracy is further enhanced by 99.8% toward unknown attacks with the open datasets CICDDoS2019.
引用
收藏
页数:24
相关论文
共 50 条
  • [1] Detection of Unknown DDoS Attack Using Reconstruct Error and One-Class SVM Featuring Stochastic Gradient Descent
    Shieh, Chin-Shiuh
    Nguyen, Thanh-Tuan
    Chen, Chun-Yueh
    Horng, Mong-Fong
    MATHEMATICS, 2023, 11 (01)
  • [2] DDoS-attack detection using artificial neural networks in Matlab
    Kupershtein, Leonid M.
    Martyniuk, Tatiana B.
    Voitovych, Olesia P.
    Kulchytskyi, Bohdan V.
    Kozhemiako, Andrii V.
    Sawicki, Daniel
    Kalimoldayev, Mashat
    PHOTONICS APPLICATIONS IN ASTRONOMY, COMMUNICATIONS, INDUSTRY, AND HIGH-ENERGY PHYSICS EXPERIMENTS 2019, 2019, 11176
  • [3] Unknown DDoS Attack Detection with Fuzzy C-Means Clustering and Spatial Location Constraint Prototype Loss
    Nguyen, Thanh-Lam
    Kao, Hao
    Nguyen, Thanh-Tuan
    Horng, Mong-Fong
    Shieh, Chin-Shiuh
    CMC-COMPUTERS MATERIALS & CONTINUA, 2024, 78 (02): : 2181 - 2205
  • [4] Neural Networks for DDoS Attack Detection using an Enhanced Urban IoT Dataset
    Hekmati, Arvin
    Grippo, Eugenio
    Krishnamachari, Bhaskar
    2022 31ST INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS (ICCCN 2022), 2022,
  • [5] Advancing DDoS attack detection with hybrid deep learning: integrating convolutional neural networks, PCA, and vision transformers
    Shaikh, Jahangir
    Syed, Toqeer Ali
    Shah, Syed Aziz
    Jan, Salman
    Ul Ain, Qurat
    Singh, Pradeep Kumar
    INTERNATIONAL JOURNAL ON SMART SENSING AND INTELLIGENT SYSTEMS, 2024, 17 (01):
  • [6] Wheeze Detection Using Convolutional Neural Networks
    Kochetov, Kirill
    Putin, Evgeny
    Azizov, Svyatoslav
    Skorobogatov, Ilya
    Filchenkov, Andrey
    PROGRESS IN ARTIFICIAL INTELLIGENCE (EPIA 2017), 2017, 10423 : 162 - 173
  • [7] Robust detection of unknown DoS/DDoS attacks in IoT networks using a hybrid learning model
    Nguyen, Xuan-Ha
    Le, Kim-Hung
    INTERNET OF THINGS, 2023, 23
  • [8] Unknown DDoS Attack Detection with Sliced Iterative Normalizing Flows Technique
    Shieh, Chin-Shiuh
    Nguyen, Thanh-Lam
    Nguyen, Thanh-Tuan
    Horng, Mong-Fong
    CMC-COMPUTERS MATERIALS & CONTINUA, 2025, 82 (03): : 4881 - 4912
  • [9] DDoS attack detection techniques in IoT networks: a survey
    Pakmehr, Amir
    Assmuth, Andreas
    Taheri, Negar
    Ghaffari, Ali
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2024, 27 (10): : 14637 - 14668
  • [10] Hybrid Convolutional Neural Network for Robust Attack Detection in Wireless Sensor Networks
    Sharma, Kanta Prasad
    Hussain, Rifat
    Jaharadak, Adam Amril
    Trawnih, Ali Ahmad
    Verma, Deekhsha
    Dasi, Shivakrishna
    Pant, Shivani
    INTERNET TECHNOLOGY LETTERS, 2025,