FTG-Net: Hierarchical Flow-to-Traffic Graph Neural Network for DDoS Attack Detection

被引:5
作者
Barsellotti, Luca [1 ]
De Marinis, Lorenzo [2 ]
Cugini, Filippo [3 ]
Paolucci, Francesco [3 ]
机构
[1] Univ Modena & Reggio Emilia, Modena, Italy
[2] Scuola Super Sant Anna, Pisa, Italy
[3] CNIT, Pisa, Italy
来源
2023 IEEE 24TH INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE SWITCHING AND ROUTING, HPSR | 2023年
关键词
cybersecurity; DDoS attack detection; machine learning; graph neural networks;
D O I
10.1109/HPSR57248.2023.10147929
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Distributed Denial of Service (DDoS) is one of the most common cyber-attacks and caused several damages in recent years. Such attacks can be executed either through the orchestration of multiple devices that synchronously send requests or through specific patterns followed by a single device to force the victim to keep resources overrun. It becomes crucial to develop robust techniques to promptly detect those two kinds of DDoS attacks and mitigate their consequences. Most of the existing Machine Learning (ML) methods are based on flow and traffic information aggregations expressed in the form of independent vectors of statistical data, ignoring topological connections. Few recent solutions try to exploit the structural information of the network to improve the classification results. In particular, Graph Neural Network (GNN) based models can process traffic-level or flow-level relationships, represented as graphs, to detect malicious patterns. The objective of this paper is to combine the relationships at both the traffic-level and the flow-level by developing a two-level hierarchical graph representation and a GNN model able to process it, maximizing the information brought by the traffic structure and removing the necessity of stateful features. Experiments on the CIC-IDS2017 dataset show that the performances are comparable to the state-of-the-art solutions even using only the traffic structure.
引用
收藏
页数:6
相关论文
共 15 条
  • [1] Barsellotti L., 2022, 2022 INT C COMPUTER, P1
  • [2] Lucid: A Practical, Lightweight Deep Learning Solution for DDoS Attack Detection
    Doriguzzi-Corin, R.
    Millar, S.
    Scott-Hayward, S.
    Martinez-del-Rincon, J.
    Siracusa, D.
    [J]. IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2020, 17 (02): : 876 - 889
  • [3] Guo W, 2022, Comput Intell Neurosci
  • [4] Internet Crime Complaint Center IC3, 2021, FBI internet crime report 2021
  • [5] Kaspersky Lab ZAO, 2022, DDOS ATT Q2 2022
  • [6] Machine-Learning-Enabled DDoS Attacks Detection in P4 Programmable Networks
    Musumeci, Francesco
    Fidanci, Ali Can
    Paolucci, Francesco
    Cugini, Filippo
    Tornatore, Massimo
    [J]. JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2022, 30 (01)
  • [7] Hierarchical graph representations in digital pathology
    Pati, Pushpak
    Jaume, Guillaume
    Foncubierta-Rodriguez, Antonio
    Feroce, Florinda
    Anniciello, Anna Maria
    Scognamiglio, Giosue
    Brancati, Nadia
    Fiche, Maryse
    Dubruc, Estelle
    Riccio, Daniel
    Di Bonito, Maurizio
    De Pietro, Giuseppe
    Botti, Gerardo
    Thiran, Jean-Philippe
    Frucci, Maria
    Goksel, Orcun
    Gabrani, Maria
    [J]. MEDICAL IMAGE ANALYSIS, 2022, 75
  • [8] HACT-Net: A Hierarchical Cell-to-Tissue Graph Neural Network for Histopathological Image Classification
    Pati, Pushpak
    Jaume, Guillaume
    Fernandes, Lauren Alisha
    Foncubierta-Rodriguez, Antonio
    Feroce, Florinda
    Anniciello, Anna Maria
    Scognamiglio, Giosue
    Brancati, Nadia
    Riccio, Daniel
    Di Bonito, Maurizio
    De Pietro, Giuseppe
    Botti, Gerardo
    Goksel, Orcun
    Thiran, Jean-Philippe
    Frucci, Maria
    Gabrani, Maria
    [J]. UNCERTAINTY FOR SAFE UTILIZATION OF MACHINE LEARNING IN MEDICAL IMAGING, AND GRAPHS IN BIOMEDICAL IMAGE ANALYSIS, UNSURE 2020, GRAIL 2020, 2020, 12443 : 208 - 219
  • [9] Pujol Perich D., 2021, 3 INT WORKSHOP NETWO, P1
  • [10] Unveiling the potential of Graph Neural Networks for network modeling and optimization in SDN
    Rusek, Krzysztof
    Suarez-Varela, Jose
    Mestres, Albert
    Barlet-Ros, Pere
    Cabellos-Aparicio, Albert
    [J]. SOSR '19: PROCEEDINGS OF THE 2019 ACM SYMPOSIUM ON SDN RESEARCH, 2019, : 140 - 151