On detecting distributed denial of service attacks using fuzzy inference system

被引:3
作者
Almseidin, Mohammad [1 ]
Al-Sawwa, Jamil [2 ]
Alkasassbeh, Mouhammd [3 ]
Alweshah, Mohammed [4 ]
机构
[1] Aqaba Univ Technol, Comp Sci Dept, Aqaba, Jordan
[2] Tafila Tech Univ, Comp Sci Dept, Tafila, Jordan
[3] Princess Sumaya Univ Technol, Comp Sci Dept, Amman, Jordan
[4] Al Balqa Appl Univ, Prince Abdullah Bin Ghazi Fac Informat & Commun T, Al Salt, Jordan
来源
CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS | 2023年 / 26卷 / 02期
关键词
Intrusion detection system (IDS); Fuzzy inference system; Distributed denial of service attack (DDoS); Machine learning; Intrusion datasets;
D O I
10.1007/s10586-022-03657-5
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Nowadays, attackers are constantly targeting the modern aspects of technology and attempting to abuse these technologies using different attacks types such as the distributed denial of service attack (DDoS). Therefore, protecting web services is not an easy task. There is a critical demand to detect and prevent DDoS attacks. This paper introduces a fuzzy inference-based anomaly-based intrusion detection (IDS) system to detect DDoS attacks. The aim of using the fuzzy inference system is to avoid binary decisions and, meanwhile, to avoid the issues associated with the deficiencies of IDS alert system awareness. This benefit could improve the IDS alert system's robustness and effectively produce more readable and understandable IDS alerts. The proposed detection model was applied to a recent open-source DDoS dataset. At the early stage of designing the proposed detection model, the DDoS dataset was preprocessed using the Info-gain features selection algorithm to deal with the relevant features only and reduce the complexity of the fuzzy inference system. The proposed detection model was tested, evaluated, and obtained a 96.25% accuracy rate and a false-positive rate of 0.006%. Moreover, it effectively smoothes the boundaries between normal and DDoS traffic. In addition, the results obtained from the proposed detection model were compared with other literature results. The results indicated that the detection accuracy of this work is competitive with other methods. In addition to this, this work offers more elements of trust in DDoS attack detection by following the strategy to avoid the binary decision and offering the required extension of the binary decision to the continuous space; hence, the attack level could be easily measured.
引用
收藏
页码:1337 / 1351
页数:15
相关论文
共 38 条
  • [1] DDoS attack detection with feature engineering and machine learning: the framework and performance evaluation
    Aamir, Muhammad
    Zaidi, Syed Mustafa Ali
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2019, 18 (06) : 761 - 785
  • [2] Detection of IoT-botnet attacks using fuzzy rule interpolation
    Al-Kasassbeh, Mouhammd
    Almseidin, Mohammad
    Alrfou, Khaled
    Kovacs, Szilveszter
    [J]. JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2020, 39 (01) : 421 - 431
  • [3] Alkasassbeh M., 2018, ICCCNT 2018 20 INT C
  • [4] ALKASASSBEH M, 2016, INT J ADV COMPUT SC
  • [5] Almseidin M., 2019, Production Systems and Information Engineering, V8, P51, DOI [10.32968/psaie.2019.004, DOI 10.32968/PSAIE.2019.004]
  • [6] Almseidin M., 2019, INT J ADV SCI ENG IN, V9, P735, DOI DOI 10.18517/IJASEIT.9.3.7360
  • [7] Almseidin M, 2019, INT J ADV SCI ENG IN, V9, P575, DOI DOI 10.18517/IJASEIT.9.2.7591
  • [8] Almseidin M., 2018, J THEORETICAL APPL I, V96, P5473
  • [9] Almseidin M, 2019, 2019 2ND INTERNATIONAL CONFERENCE ON NEW TRENDS IN COMPUTING SCIENCES (ICTCS), P33, DOI 10.1109/ictcs.2019.8923028
  • [10] Almseidin M, 2017, I S INTELL SYST INFO, P277, DOI 10.1109/SISY.2017.8080566