Multi-domain collaborative two-level DDoS detection via hybrid deep learning

被引:1
|
作者
Feng, Huifen [1 ,4 ]
Zhang, Weiting [1 ]
Liu, Ying [1 ]
Zhang, Chuan [2 ]
Ying, Chenhao [3 ]
Jin, Jian [4 ]
Jiao, Zhenzhen [5 ]
机构
[1] Beijing Jiaotong Univ, Sch Elect & Informat Engn, Beijing 100044, Peoples R China
[2] Beijing Inst Technol, Sch Cyberspace Sci & Technol, Beijing 100081, Peoples R China
[3] Shanghai Jiao Tong Univ, Dept Comp Sci, Shanghai, Peoples R China
[4] China Acad Informat & Commun Technol, Res Inst Ind Internet Things, Beijing, Peoples R China
[5] China Acad Informat & Commun Technol, Teleinfo Intelligent Future Labs, Beijing, Peoples R China
基金
中国国家自然科学基金; 中国博士后科学基金;
关键词
Software Defined Networks (SDN); Multi-domain; Renyi entropy; Improved hybrid deep learning; Distributed Denial-of-Service (DDoS); INTRUSION DETECTION; ATTACK DETECTION; ARCHITECTURE; BLOCKCHAIN;
D O I
10.1016/j.comnet.2024.110251
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
In this paper, we investigate the problem of multiple network domains being threatened by Distributed Denialof -Service (DDoS) attacks, in which a DDoS attack detection scheme is constructed based on the Software Defined Networks (SDN) hierarchical distributed control plane architecture. Specifically, we propose a twolevel detection framework for collaborative DDoS attack detection in multi -domain scenarios. To detect the signs of DDoS attacks as early as possible on the attack path, a first -level coarse -grained anomaly detection method based on the Renyi entropy algorithm is proposed. The purpose is to calculate the feature entropy of normal and abnormal traffic in a simple statistical way within the local network domain, achieving rapid perception of network anomalies. Then, the root server aggregates all abnormal traffic data uploaded by each local network domain, and the DCNN-LSTM algorithm based on a hybrid deep learning model as the secondlevel detection method extracts the features of the suspicious traffic from both temporal and spatial dimensions to achieve fine-grained DDoS attack classification. Finally, theoretical analysis and experimental results indicate that the proposed two -level detection method in multi -domain scenarios is effective and feasible, while with high detection accuracy.
引用
收藏
页数:13
相关论文
共 33 条
  • [21] A Wrapper Feature Selection Based Hybrid Deep Learning Model for DDoS Detection in a Network with NFV Behaviors
    Tikhe, Gajanan Nanaji
    Patheja, Pushpinder Singh
    WIRELESS PERSONAL COMMUNICATIONS, 2023, 133 (01) : 481 - 506
  • [22] v3MFND: A Deep Multi-domain Multimodal Fake News Detection Model for Vietnamese
    Cam-Van Nguyen Thi
    Thanh-Toan Vuong
    Duc-Trong Le
    Quang-Thuy Ha
    INTELLIGENT INFORMATION AND DATABASE SYSTEMS, ACIIDS 2022, PT I, 2022, 13757 : 608 - 620
  • [23] Multi-Agent and Cooperative Deep Reinforcement Learning for Scalable Network Automation in Multi-Domain SD-EONs
    Li, Baojia
    Zhang, Ruyun
    Tian, Xiaojian
    Zhu, Zuqing
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2021, 18 (04): : 4801 - 4813
  • [24] Collaborative Federated Learning for 6G With a Deep Reinforcement Learning-Based Controlling Mechanism: A DDoS Attack Detection Scenario
    Kianpisheh, Somayeh
    Taleb, Tarik
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2024, 21 (04): : 4731 - 4749
  • [25] Advancing DDoS attack detection with hybrid deep learning: integrating convolutional neural networks, PCA, and vision transformers
    Shaikh, Jahangir
    Syed, Toqeer Ali
    Shah, Syed Aziz
    Jan, Salman
    Ul Ain, Qurat
    Singh, Pradeep Kumar
    INTERNATIONAL JOURNAL ON SMART SENSING AND INTELLIGENT SYSTEMS, 2024, 17 (01):
  • [26] Bi-channel hybrid GAN attention based anomaly detection system for multi-domain SDN environment
    Prabu, Saranya
    Padmanabhan, Jayashree
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2024, 46 (01) : 457 - 478
  • [27] Detection Method of DC Microgrid Network Attack Based on Two-level and Multi-segment Model
    Liren Zou
    Wireless Personal Communications, 2022, 127 : 1665 - 1681
  • [28] Detection Method of DC Microgrid Network Attack Based on Two-level and Multi-segment Model
    Zou, Liren
    WIRELESS PERSONAL COMMUNICATIONS, 2022, 127 (02) : 1665 - 1681
  • [29] Two-Level Privacy-Preserving Framework: Federated Learning for Attack Detection in the Consumer Internet of Things
    Rabieinejad, Elnaz
    Yazdinejad, Abbas
    Dehghantanha, Ali
    Srivastava, Gautam
    IEEE TRANSACTIONS ON CONSUMER ELECTRONICS, 2024, 70 (01) : 4258 - 4265
  • [30] Optimized detection of cyber-attacks on IoT networks via hybrid deep learning models
    Bensaoud, Ahmed
    Kalita, Jugal
    AD HOC NETWORKS, 2025, 170