An Improved Deep Learning Model for DDoS Detection Based on Hybrid Stacked Autoencoder and Checkpoint Network

被引:9
|
作者
Mousa, Amthal K. [1 ]
Abdullah, Mohammed Najm [1 ]
机构
[1] Univ Technol Iraq, Comp Engn Dept, POB 10071, Baghdad, Iraq
来源
FUTURE INTERNET | 2023年 / 15卷 / 08期
关键词
DDoS detection; distributed denial of service; software defined networking; SDN; network security; ATTACK DETECTION;
D O I
10.3390/fi15080278
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The software defined network (SDN) collects network traffic data and proactively manages networks. SDN's programmability makes it excellent for developing distributed applications, cybersecurity, and decentralized network control in multitenant data centers. This exceptional architecture is vulnerable to security concerns, such as distributed denial of service (DDoS) attacks. DDoS attacks can be very serious due to the fact that they prevent authentic users from accessing, temporarily or indefinitely, resources they would normally expect to have. Moreover, there are continuous efforts from attackers to produce new techniques to avoid detection. Furthermore, many existing DDoS detection methods now in use have a high potential for producing false positives. This motivates us to provide an overview of the research studies that have already been conducted in this area and point out the strengths and weaknesses of each of those approaches. Hence, adopting an optimal detection method is necessary to overcome these issues. Thus, it is crucial to accurately detect abnormal flows to maintain the availability and security of the network. In this work, we propose hybrid deep learning algorithms, which are the long short-term memory network (LSTM) and convolutional neural network (CNN) with a stack autoencoder for DDoS attack detection and checkpoint network, which is a fault tolerance strategy for long-running processes. The proposed approach is trained and tested with the aid of two DDoS attack datasets in the SDN environment: the DDoS attack SDN dataset and Botnet dataset. The results show that the proposed model achieves a very high accuracy, reaching 99.99% in training, 99.92% in validation, and 100% in precision, recall, and F1 score with the DDoS attack SDN dataset. Also, it achieves 100% in all metrics with the Botnet dataset. Experimental results reveal that our proposed model has a high feature extraction ability and high performance in detecting attacks. All performance metrics indicate that the proposed approach is appropriate for a real-world flow detection environment.
引用
收藏
页数:16
相关论文
共 50 条
  • [1] DDoS attack detection and defense based on hybrid deep learning model in SDN
    Li C.
    Wu Y.
    Qian Z.
    Sun Z.
    Wang W.
    2018, Editorial Board of Journal on Communications (39): : 176 - 187
  • [2] A Wrapper Feature Selection Based Hybrid Deep Learning Model for DDoS Detection in a Network with NFV Behaviors
    Tikhe, Gajanan Nanaji
    Patheja, Pushpinder Singh
    WIRELESS PERSONAL COMMUNICATIONS, 2023, 133 (01) : 481 - 506
  • [3] A hybrid deep learning model for multi-class DDoS detection in SDN networks
    Zaidoun, Ameur Salem
    Lachiri, Zied
    ANNALS OF TELECOMMUNICATIONS, 2025, : 459 - 472
  • [4] Deep Learning-based DDoS Detection in Network Traffic Data
    Hadi, Teeb Hussein
    INTERNATIONAL JOURNAL OF ELECTRICAL AND COMPUTER ENGINEERING SYSTEMS, 2024, 15 (05) : 407 - 414
  • [5] Improved DDoS Detection Utilizing Deep Neural Networks and Feedforward Neural Networks as Autoencoder
    Yaser, Ahmed Latif
    Mousa, Hamdy M.
    Hussein, Mahmoud
    FUTURE INTERNET, 2022, 14 (08):
  • [6] DDoS ATTACK DETECTION METHODS BASED ON DEEP LEARNING IN HEALTHCARE
    Wang, Chaoying
    Zhu, Ting
    JOURNAL OF MECHANICS IN MEDICINE AND BIOLOGY, 2023, 23 (04)
  • [7] Deep network approach with stacked sparse autoencoders in detection of DDoS attacks on SDN-based VANET
    Polat, Huseyin
    Turkoglu, Muammer
    Polat, Onur
    IET COMMUNICATIONS, 2020, 14 (22) : 4089 - 4100
  • [8] A deep learning approach to network intrusion detection using deep autoencoder
    Moraboena S.
    Ketepalli G.
    Ragam P.
    Rev. Intell. Artif., 4 (457-463): : 457 - 463
  • [9] Improved Network Monitoring Using Software-Defined Networking for DDoS Detection and Mitigation Evaluation
    Ramprasath, J.
    Seethalakshmi, V.
    WIRELESS PERSONAL COMMUNICATIONS, 2021, 116 (03) : 2743 - 2757
  • [10] A novel DDoS detection and mitigation technique using hybrid machine learning model and redirect illegitimate traffic in SDN network
    Singh, Avtar
    Kaur, Harpreet
    Kaur, Navjot
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2024, 27 (03): : 3537 - 3557