An Improved Deep Learning Model for DDoS Detection Based on Hybrid Stacked Autoencoder and Checkpoint Network

被引:9
|
作者
Mousa, Amthal K. [1 ]
Abdullah, Mohammed Najm [1 ]
机构
[1] Univ Technol Iraq, Comp Engn Dept, POB 10071, Baghdad, Iraq
来源
FUTURE INTERNET | 2023年 / 15卷 / 08期
关键词
DDoS detection; distributed denial of service; software defined networking; SDN; network security; ATTACK DETECTION;
D O I
10.3390/fi15080278
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The software defined network (SDN) collects network traffic data and proactively manages networks. SDN's programmability makes it excellent for developing distributed applications, cybersecurity, and decentralized network control in multitenant data centers. This exceptional architecture is vulnerable to security concerns, such as distributed denial of service (DDoS) attacks. DDoS attacks can be very serious due to the fact that they prevent authentic users from accessing, temporarily or indefinitely, resources they would normally expect to have. Moreover, there are continuous efforts from attackers to produce new techniques to avoid detection. Furthermore, many existing DDoS detection methods now in use have a high potential for producing false positives. This motivates us to provide an overview of the research studies that have already been conducted in this area and point out the strengths and weaknesses of each of those approaches. Hence, adopting an optimal detection method is necessary to overcome these issues. Thus, it is crucial to accurately detect abnormal flows to maintain the availability and security of the network. In this work, we propose hybrid deep learning algorithms, which are the long short-term memory network (LSTM) and convolutional neural network (CNN) with a stack autoencoder for DDoS attack detection and checkpoint network, which is a fault tolerance strategy for long-running processes. The proposed approach is trained and tested with the aid of two DDoS attack datasets in the SDN environment: the DDoS attack SDN dataset and Botnet dataset. The results show that the proposed model achieves a very high accuracy, reaching 99.99% in training, 99.92% in validation, and 100% in precision, recall, and F1 score with the DDoS attack SDN dataset. Also, it achieves 100% in all metrics with the Botnet dataset. Experimental results reveal that our proposed model has a high feature extraction ability and high performance in detecting attacks. All performance metrics indicate that the proposed approach is appropriate for a real-world flow detection environment.
引用
收藏
页数:16
相关论文
共 50 条
  • [21] Improved Network Monitoring Using Software-Defined Networking for DDoS Detection and Mitigation Evaluation
    J. Ramprasath
    V. Seethalakshmi
    Wireless Personal Communications, 2021, 116 : 2743 - 2757
  • [22] AN OVERVIEW OF MACHINE LEARNING BASED APPROACHES IN DDoS DETECTION
    Atasever, Sureyya
    Ozcelik, Ilker
    Sagiroglu, Seref
    2020 28TH SIGNAL PROCESSING AND COMMUNICATIONS APPLICATIONS CONFERENCE (SIU), 2020,
  • [23] Chronos: DDoS Attack Detection Using Time-Based Autoencoder
    Salahuddin, Mohammad A.
    Pourahmadi, Vahid
    Alameddine, Hyame Assem
    Bari, Md Faizul
    Boutaba, Raouf
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2022, 19 (01): : 627 - 641
  • [24] DDoS Attack Detection Using Hybrid Machine Learning Based IDS Models
    Sumathi, S.
    Rajesh, R.
    Karthikeyan, N.
    JOURNAL OF SCIENTIFIC & INDUSTRIAL RESEARCH, 2022, 81 (03): : 276 - 286
  • [25] Machine Learning based DDOS Detection
    Priya, S. Shanmuga
    Sivaram, M.
    Yuvaraj, D.
    Jayanthiladevi, A.
    2020 INTERNATIONAL CONFERENCE ON EMERGING SMART COMPUTING AND INFORMATICS (ESCI), 2020, : 234 - 237
  • [26] DDoS attack detection and mitigation using deep neural network in SDN environment
    Hnamte, Vanlalruata
    Najar, Ashfaq Ahmad
    Hong, Nhung-Nguyen
    Hussain, Jamal
    Sugali, Manohar Naik
    COMPUTERS & SECURITY, 2024, 138
  • [27] Deep Learning-based Slow DDoS Attack Detection in SDN-based Networks
    Nugraha, Beny
    Murthy, Rathan Narasimha
    2020 IEEE CONFERENCE ON NETWORK FUNCTION VIRTUALIZATION AND SOFTWARE DEFINED NETWORKS (NFV-SDN), 2020, : 51 - 56
  • [28] Conditional entropy-based hybrid DDoS detection model for IoT networks
    Pandey, Nimisha
    Mishra, Pramod Kumar
    COMPUTERS & SECURITY, 2025, 150
  • [29] Neural Network-Based Approach for Detection and Mitigation of DDoS Attacks in SDN Environments
    Hannache, Oussama
    Batouche, Mohamed Chaouki
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY AND PRIVACY, 2020, 14 (03) : 50 - 71
  • [30] Towards sFlow and adaptive polling sampling for deep learning based DDoS detection in SDN
    Ujjan, Raja Majid Ali
    Pervez, Zeeshan
    Dahal, Keshav
    Bashir, Ali Kashif
    Mumtaz, Rao
    Gonzalez, J.
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2020, 111 : 763 - 779