Adversarially robust and real-time DDoS detection and classification framework using AutoML

被引:0
|
作者
Maurya, Sambhrant [1 ]
Handa, Anand [1 ]
Kumar, Nitesh [1 ]
Shukla, Sandeep K. [1 ]
机构
[1] IIT Kanpur, Ctr C3i, Dept Comp Sci & Engn, Kanpur, Uttar Pradesh, India
来源
INFORMATION SECURITY JOURNAL | 2024年 / 33卷 / 04期
关键词
Adversarial attack; adversarial retraining; AutoML; DDoS attack detection; flow based analysis; DETECTION SYSTEM; SERVICE ATTACKS;
D O I
10.1080/19393555.2024.2332955
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Denial of Service (DoS) attacks target the availability part of the CIA triad (Confidentiality, Availability, and Integrity). A special category of these attacks is the Distributed DoS (DDoS) attack, where the attacker uses a network of compromised systems called a botnet to flood a target server with requests and refuses to serve legitimate users. DDoS attacks can cost an organization millions of dollars in terms of lost revenue, remediation costs, and damage to brand reputation. Hence, all organizations need speedy real-time detection of DDoS attacks. This work presents a DDoS detection and classification framework using the flow-based approach for feature engineering and the AutoML technique. Our detection system is trained on the latest DDoS datasets - CIC-DDoS 2019 and CIC-IDS 2017, which contain various categories of DDoS attacks. We use various tools to perform adversarial attacks on our trained model. We retrain our models using adversarially crafted network packet captures and then test our models for robustness against practical adversarial attacks that an attacker might use to evade detection. Finally, we deploy our model in real-time using a GUI-based tool. Our model achieves a validation accuracy of 99.9% and a low false positive rate of 0.05%.
引用
收藏
页码:425 / 442
页数:18
相关论文
共 50 条
  • [41] Robust compression and detection of epileptiform patterns in ECoG using a real-time spiking neural network hardware framework
    Costa, Filippo
    Schaft, Eline V.
    Huiskamp, Geertjan
    Aarnoutse, Erik J.
    van't Klooster, Maryse A.
    Krayenbuhl, Niklaus
    Ramantani, Georgia
    Zijlmans, Maeike
    Indiveri, Giacomo
    Sarnthein, Johannes
    NATURE COMMUNICATIONS, 2024, 15 (01)
  • [42] RTVD: A Real-Time Volumetric Detection Scheme for DDoS in the Internet of Things
    Li, Jiabin
    Liu, Ming
    Xue, Zhi
    Fan, Xiaochen
    He, Xiangjian
    IEEE ACCESS, 2020, 8 : 36191 - 36201
  • [43] Real-Time Detection and Mitigation of DDoS Attacks in Intelligent Transportation Systems
    Haydari, Ammar
    Yilmaz, Yasin
    2018 21ST INTERNATIONAL CONFERENCE ON INTELLIGENT TRANSPORTATION SYSTEMS (ITSC), 2018, : 157 - 163
  • [44] Devising a hybrid approach for near real-time DDoS detection in IoT
    Pandey, Nimisha
    Mishra, Pramod Kumar
    COMPUTERS & ELECTRICAL ENGINEERING, 2024, 118
  • [45] Robust Real-Time Load Profile Encoding and Classification Framework for Efficient Power Systems Operation
    Varga, Ervin D.
    Beretka, Sandor F.
    Noce, Christian
    Sapienza, Gianluca
    IEEE TRANSACTIONS ON POWER SYSTEMS, 2015, 30 (04) : 1897 - 1904
  • [46] Improved real-time data anomaly detection using context classification
    Branisavljevic, Nemanja
    Kapelan, Zoran
    Prodanovic, Dusan
    JOURNAL OF HYDROINFORMATICS, 2011, 13 (03) : 307 - 323
  • [47] Controlling etch tools using real-time fault detection and classification
    Chen, MS
    Yen, TF
    Coonan, B
    MICRO, 2005, 23 (02): : 59 - +
  • [48] Real-Time Framework for Malware Detection Using Machine Learning Technique
    Mukesh, Sharma Divya
    Raval, Jigar A.
    Upadhyay, Hardik
    INFORMATION AND COMMUNICATION TECHNOLOGY FOR INTELLIGENT SYSTEMS (ICTIS 2017) - VOL 1, 2018, 83 : 173 - 182
  • [49] Retrofit Leakage Prevention Using Real-Time Gas Detection and Classification
    Mehndiratta, Aadarsh
    Breitkopf, Karl Vacili
    Reddy, Satish
    Teja, Gadamsetti Sri
    Pai, Akshatha Rakesh
    ADVANCED SCIENCE LETTERS, 2017, 23 (03) : 1741 - 1744
  • [50] Framework of Real-time Car Detection using Calibrated Camera and LRF
    Kurnianggoro, Laksono
    Jo, Kang-Hyun
    2015 15TH INTERNATIONAL CONFERENCE ON CONTROL, AUTOMATION AND SYSTEMS (ICCAS), 2015, : 938 - 942