Adversarially robust and real-time DDoS detection and classification framework using AutoML

被引:0
|
作者
Maurya, Sambhrant [1 ]
Handa, Anand [1 ]
Kumar, Nitesh [1 ]
Shukla, Sandeep K. [1 ]
机构
[1] IIT Kanpur, Ctr C3i, Dept Comp Sci & Engn, Kanpur, Uttar Pradesh, India
来源
INFORMATION SECURITY JOURNAL | 2024年 / 33卷 / 04期
关键词
Adversarial attack; adversarial retraining; AutoML; DDoS attack detection; flow based analysis; DETECTION SYSTEM; SERVICE ATTACKS;
D O I
10.1080/19393555.2024.2332955
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Denial of Service (DoS) attacks target the availability part of the CIA triad (Confidentiality, Availability, and Integrity). A special category of these attacks is the Distributed DoS (DDoS) attack, where the attacker uses a network of compromised systems called a botnet to flood a target server with requests and refuses to serve legitimate users. DDoS attacks can cost an organization millions of dollars in terms of lost revenue, remediation costs, and damage to brand reputation. Hence, all organizations need speedy real-time detection of DDoS attacks. This work presents a DDoS detection and classification framework using the flow-based approach for feature engineering and the AutoML technique. Our detection system is trained on the latest DDoS datasets - CIC-DDoS 2019 and CIC-IDS 2017, which contain various categories of DDoS attacks. We use various tools to perform adversarial attacks on our trained model. We retrain our models using adversarially crafted network packet captures and then test our models for robustness against practical adversarial attacks that an attacker might use to evade detection. Finally, we deploy our model in real-time using a GUI-based tool. Our model achieves a validation accuracy of 99.9% and a low false positive rate of 0.05%.
引用
收藏
页码:425 / 442
页数:18
相关论文
共 50 条
  • [31] A Robust and Real-time Road Detection Algorithm Using Vanishing Point
    Chao, Chen
    Cheng, Xu
    Yang Zhibang
    2011 INTERNATIONAL CONFERENCE ON CIVIL ENGINEERING AND INFORMATION TECHNOLOGY (CEIT 2011), 2011, : 33 - 37
  • [32] Real-Time Gait Anomaly Detection Using SVM Time Series Classification
    Rostovski, Jakob
    Krivosei, Andrei
    Kuusik, Alar
    Alam, Muhammad Mahtab
    Ahmadov, Ulvi
    2023 INTERNATIONAL WIRELESS COMMUNICATIONS AND MOBILE COMPUTING, IWCMC, 2023, : 1389 - 1394
  • [33] Robust real-time emotion detection system using CNN architecture
    Jaiswal, Shruti
    Nandi, G. C.
    NEURAL COMPUTING & APPLICATIONS, 2020, 32 (15): : 11253 - 11262
  • [34] Robust real-time face detection using hybrid neural networks
    Kim, Ho-Joon
    Lee, Juho
    Yang, Hyun-Seung
    COMPUTATIONAL INTELLIGENCE AND BIOINFORMATICS, PT 3, PROCEEDINGS, 2006, 4115 : 721 - 730
  • [35] Robust real-time emotion detection system using CNN architecture
    Shruti Jaiswal
    G. C. Nandi
    Neural Computing and Applications, 2020, 32 : 11253 - 11262
  • [36] Robust real-time face detection using face certainty map
    Jun, Bongjin
    Kim, Daijin
    ADVANCES IN BIOMETRICS, PROCEEDINGS, 2007, 4642 : 29 - +
  • [37] Real-time robust automatic eye state classification
    Li, Zhaorong
    Ai, Haizhou
    Jisuanji Fuzhu Sheji Yu Tuxingxue Xuebao/Journal of Computer-Aided Design and Computer Graphics, 2007, 19 (03): : 292 - 297
  • [38] Real-time DDoS flooding attack detection in intelligent transportation systems
    Karthikeyan, H.
    Usha, G.
    COMPUTERS & ELECTRICAL ENGINEERING, 2022, 101
  • [39] Offloading Real-time DDoS Attack Detection to Programmable Data Planes
    Lapolli, Angelo Cardoso
    Marques, Jonatas Adilson
    Gaspary, Luciano Paschoal
    2019 IFIP/IEEE SYMPOSIUM ON INTEGRATED NETWORK AND SERVICE MANAGEMENT (IM), 2019,
  • [40] Real-Time Detection of DDoS Attacks Based on Random Forest in SDN
    Ma, Ruikui
    Wang, Qiuqian
    Bu, Xiangxi
    Chen, Xuebin
    APPLIED SCIENCES-BASEL, 2023, 13 (13):