An intelligent DDoS attack detection tree-based model using Gini index feature selection method

被引:20
|
作者
Bouke, Mohamed Aly [1 ]
Abdullah, Azizol [1 ]
ALshatebi, Sameer Hamoud [1 ]
Abdullah, Mohd Taufik [1 ]
El Atigh, Hayate [2 ]
机构
[1] Univ Putra Malaysia, Fac Comp Sci & Informat Technol, Serdang 43400, Malaysia
[2] Bandirma Onyedi Eylul Univ, Fac Comp Engn, TR-10200 Balikesir, Turkiye
关键词
Feature importance; Decision trees; Gini index; DDoS; UNSW-NB15; DEEP LEARNING APPROACH; INTERNET; THINGS; PERFORMANCE; SYSTEMS;
D O I
10.1016/j.micpro.2023.104823
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber security has recently garnered enormous attention due to the popularity of the Internet of Things (IoT), intelligent devices' rapid growth, and a vast number of real-life applications. As a result, detecting threats and constructing an efficient Intrusion detection system (IDS) have become crucial in today's security requirements. Withal, the large amount of high dimensional data might influence detection effectiveness and raise the computation requirements. Artificial Intelligence (AI) has recently attracted much attention and is widely used to build intelligent IDSs to preserve data confidentiality, integrity, and availability. Distributed denial of service (DDoS) is a denial of service (DoS) variant mainly targeting asset availability. Preventing DoS at the network or infrastructure level typically depends on implementing an IDS. This paper proposes a novel intelligent DDoS attack detection model based on a Decision Tee (DT) algorithm and an enhanced Gini index feature selection method. Our approach is evaluated on the UNSW-NB15 dataset, which contains 1,140,045 samples and is more recent and comprehensive than those used in previous works. Our system achieved an overall accuracy of 98%, outperforming baseline models that used more advanced algorithms such as Random Forest and XGBoost. Our enhanced Gini index feature selection method allowed us to select only 13 out of 45 security features, signifi-cantly reducing the data dimensionality and avoiding overfitting issues. Our model also has a lower false alarm rate, misclassifying only 2% of the testing instances. Our approach is, therefore, highly effective and efficient, with the potential to be used in real-world network security applications.
引用
收藏
页数:10
相关论文
共 50 条
  • [31] Aspect term extraction for sentiment analysis in large movie reviews using Gini Index feature selection method and SVM classifier
    Manek, Asha S.
    Shenoy, P. Deepa
    Mohan, M. Chandra
    Venugopal, K. R.
    WORLD WIDE WEB-INTERNET AND WEB INFORMATION SYSTEMS, 2017, 20 (02): : 135 - 154
  • [32] Towards Effective Feature Selection for IoT Botnet Attack Detection Using a Genetic Algorithm
    Liu, Xiangyu
    Du, Yanhui
    ELECTRONICS, 2023, 12 (05)
  • [33] Entropy based earlier detection and mitigation of DDOS attack using stochastic method in SDN_IOT
    Varalakshmi, I.
    Thenmozhi, M.
    Measurement: Sensors, 2025, 39
  • [34] A hybrid feature selection method combining Gini index and support vector machine with recursive feature elimination for gene expression classification
    Almutiri, Talal
    Saeed, Faisal
    INTERNATIONAL JOURNAL OF DATA MINING MODELLING AND MANAGEMENT, 2022, 14 (01) : 41 - 62
  • [35] DDoS attack detection in cloud using ensemble model tuned with optimal hyperparameter
    Reddy, K. Balachandra
    Meera, S.
    INTERNATIONAL JOURNAL OF ADAPTIVE CONTROL AND SIGNAL PROCESSING, 2024, 38 (05) : 1594 - 1620
  • [36] A Hadoop based analysis and detection model for IP Spoofing typed DDoS attack
    Zhang, Jian
    Liu, Pin
    He, Jianbiao
    Zhang, Yawei
    2016 IEEE TRUSTCOM/BIGDATASE/ISPA, 2016, : 1976 - 1983
  • [37] Defending DDoS Attack using Stochastic Model based Puzzle Controller
    Santhosh, K. M.
    Isaac, Elizabeth
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2013, 13 (04): : 100 - 105
  • [38] Detection of cyber attacks in IoT using tree-based ensemble and feedforward neural network
    Shorfuzzaman, Mohammad
    2020 IEEE INTERNATIONAL CONFERENCE ON SYSTEMS, MAN, AND CYBERNETICS (SMC), 2020, : 2601 - 2606
  • [39] Tree-Based Algorithms and Incremental Feature Optimization for Fault Detection and Diagnosis in Photovoltaic Systems
    Chahine, Khaled
    ENG, 2025, 6 (01):
  • [40] Frequency Based DDoS Attack Detection Approach Using Naive Bayes Classification
    Fouladi, Ramin Fadaei
    Kayatas, Cemil Eren
    Anarim, Emin
    2016 39TH INTERNATIONAL CONFERENCE ON TELECOMMUNICATIONS AND SIGNAL PROCESSING (TSP), 2016, : 104 - 107