Neighbor discovery protocol anomaly-based detection system using neural network algorithm

被引:0
作者
Saad, Redhwan M. A. [1 ,2 ]
Anbar, Mohammed [2 ]
Manickam, Selvakumar [2 ]
Shaheen, Samir I. [3 ]
Hasbullah, Iznan H. [2 ]
机构
[1] Ibb Univ, Fac Engn, Dept Elect Engn, Ibb 70270, Yemen
[2] Univ Sains Malaysia USM, Natl Adv Ctr IPv6, Gelugor, Penang, Malaysia
[3] Cairo Univ, Fac Engn, Dept Comp Engn, Giza 12613, Egypt
关键词
NDP; Anomaly detection; Neural networks; Backpropagation algorithm; Feature selection; IPv6; network; ATTACKS;
D O I
10.1007/s10207-024-00815-1
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The exponential increase in Internet-facing devices in the last decade has resulted in IP address exhaustion due to the limitations of the existing IPv4 address space. Therefore, the Internet Engineering Task Force engineered a new version of the Internet protocol known as Internet Protocol Version 6 (IPv6) to resolve the issue. However, IPv6 is highly dependent on the neighbor discovery protocol (NDP), which, unfortunately, has well-known vulnerabilities in its underlying messaging protocol, the Internet Control Message Protocol version 6. So, the NDP flaws leave the IPv6 network open to many security threats and attacks, including man-in-the-middle, spoofing, and denial-of-service attacks, which are the most annoying attack at the network layer. Unfortunately, one of the critical issues plaguing the existing anomaly-based detection system is the effectiveness of detecting NDP-based DDoS attacks, which requires urgent attention. This paper suggests a system to find network traffic patterns that are not normal that are caused by NDP-based attacks. It does this by teaching neural networks how to recognize network attack patterns using the backpropagation algorithm. The proposed system is a big step forward from where the field is now because it uses a complex neural network algorithm to create an NDP anomaly-based detection system. Using a real dataset to test the proposed system's performance shows that it can find NDP anomalies with a 99.95% success rate, a 99.92% precision rate, a 99.98% recall rate, an F1-Score of 99.98%, and a 0.040% false positive rate. Also, the proposed approach shows better results compared to other existing approaches.
引用
收藏
页码:1787 / 1803
页数:17
相关论文
共 50 条
[31]   Benchmarking anomaly-based detection systems [J].
Maxion, RA ;
Tan, KMC .
DSN 2000: INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS, PROCEEDINGS, 2000, :623-630
[32]   An anomaly-based approach for cyber-physical threat detection using network and sensor data [J].
Canonico, Roberto ;
Esposito, Giovanni ;
Navarro, Annalisa ;
Romano, Simon Pietro ;
Sperli, Giancarlo ;
Vignali, Andrea .
COMPUTER COMMUNICATIONS, 2025, 234
[33]   Profiling Network Traffic Behavior for the purpose of Anomaly-based Intrusion Detection [J].
Gill, Manmeet Singh ;
Lindskog, Dale ;
Zavarsky, Pavol .
2018 17TH IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (IEEE TRUSTCOM) / 12TH IEEE INTERNATIONAL CONFERENCE ON BIG DATA SCIENCE AND ENGINEERING (IEEE BIGDATASE), 2018, :885-890
[34]   Neural Network based Anomaly Detection [J].
Callegari, Christian ;
Giordano, Stefano ;
Pagano, Michele .
2014 IEEE 19TH INTERNATIONAL WORKSHOP ON COMPUTER AIDED MODELING AND DESIGN OF COMMUNICATION LINKS AND NETWORKS (CAMAD), 2014, :310-314
[35]   Neural network based anomaly detection for SCADA systems [J].
Reuter, Lenhard ;
Jung, Oliver ;
Magin, Julian .
2020 23RD CONFERENCE ON INNOVATION IN CLOUDS, INTERNET AND NETWORKS AND WORKSHOPS (ICIN 2020), 2020, :194-201
[36]   Anomaly-based intrusion detection system based on SMOTE-IPF, Whale Optimization Algorithm, and ensemble learning [J].
Shana, Tibebu Bekele ;
Kumari, Neetu ;
Agarwal, Mayank ;
Mondal, Samrat ;
Rathnayake, Upaka .
INTELLIGENT SYSTEMS WITH APPLICATIONS, 2025, 27
[37]   A Novel Anomaly-Based Intrusion Detection Model Using PSOGWO-Optimized BP Neural Network and GA-Based Feature Selection [J].
Sheikhi, Saeid ;
Kostakos, Panos .
SENSORS, 2022, 22 (23)
[38]   An Adaptive Deep-Ensemble Anomaly-Based Intrusion Detection System for the Internet of Things [J].
Albulayhi, Khalid ;
Sheldon, Frederick T. .
2021 IEEE WORLD AI IOT CONGRESS (AIIOT), 2021, :187-196
[39]   Anomaly-based IDS Implementation in Cloud Environment using BOAT Algorithm [J].
Vaid, Chetna ;
Verma, Harsh K. .
2014 3RD INTERNATIONAL CONFERENCE ON RELIABILITY, INFOCOM TECHNOLOGIES AND OPTIMIZATION (ICRITO) (TRENDS AND FUTURE DIRECTIONS), 2014,
[40]   New Wrapper Feature Selection Algorithm for Anomaly-Based Intrusion Detection Systems [J].
Kherbache, Meriem ;
Espes, David ;
Amroun, Kamal .
FOUNDATIONS AND PRACTICE OF SECURITY, FPS 2020, 2021, 12637 :3-19