Detection of distributed denial of service attacks using an ensemble of adaptive and hybrid neuro-fuzzy systems

被引:85
|
作者
Kumar, P. Arun Raj [1 ]
Selvakumar, S. [1 ]
机构
[1] Natl Inst Technol, Dept Comp Sci & Engn, CDBR SSE Project Lab, Tiruchirappalli 620015, Tamil Nadu, India
关键词
DDoS; Neuro-fuzzy; Neural networks; Machine learning; Ensemble of classifiers; IP TRACEBACK; NETWORKS;
D O I
10.1016/j.comcom.2012.09.010
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A DDoS attack is the most prevalent threat, viz., flooding the computing and communication resources in order to make the service unavailable for legitimate users, since a decade and continues to be threatening till date. Therefore, these critical resources must be protected against the DDoS attacks. The detection of DDoS attacks requires adaptive and incremental learning classifier, less computational complexity, and accurate decision making from uncertain information. Hence, the DDoS attacks could be detected using existing soft computing techniques such as fuzzy logic, neural networks, and genetic algorithms. Fuzzy logic has the advantage of interpreting the rules well but it suffers from the disadvantage of not able to acquire the rules automatically. The neural networks generalize the network well but they cannot interpret the rules. Genetic algorithm provides optimal solutions but the time complexity is high. Hybrid methods, Neuro-fuzzy and genetic fuzzy have been proposed to overcome the drawbacks of interpretability and manual rules acquisition. In this paper, adaptive and hybrid neuro-fuzzy systems were proposed as subsystems of the ensemble. Sugeno type Adaptive Neuro-Fuzzy Inference System (ANFIS) has been chosen as a base classifier for our research as Mamdani type ANFIS is not suitable for real time due to its high computational complexity and non-adaptiveness to extract exact knowledge from the dataset. Single classifier makes error on different training samples. So, by creating an ensemble of classifiers and combining their outputs, the total error can be reduced and the detection accuracy can be increased. Improvement in the performance of ANFIS ensemble is the focus of this paper. Our proposed DDoS classification algorithm, NFBoost, differs from the existing methods in weight update distribution strategy, error cost minimization, and ensemble output combination method, but resembles similar in classifier weight assignment and error computation. Our proposed NFBoost algorithm is achieved by combining ensemble of classifier outputs and Neyman Pearson cost minimization strategy, for final classification decision. Publicly available datasets such as KDD Cup, CAIDA DDOS Attack 2007, CONFICKER worm, UNINA traffic traces, and UCI Datasets were used for the simulation experiments. NFBoost was trained and tested with the publicly available datasets and our own SSE Lab(1) SSENET 2011 datasets. Detection accuracy and Cost per sample were the two metrics used to analyze the performance of the NFBoost classification algorithm and were compared with bagging, boosting, and AdaBoost algorithms. From the simulation results, it is evident that NFBoost algorithm achieves high detection accuracy (99.2%) with fewer false alarms. Cost per instance is also very less for the NFBoost algorithm compared to the existing algorithms. NFBoost algorithm outperforms the existing ensemble algorithms with a maximum gain of 8.4% and a minimum gain of 1.1%. (C) 2012 Elsevier B.V. All rights reserved.
引用
收藏
页码:303 / 319
页数:17
相关论文
共 50 条
  • [31] An Adaptive Neuro-Fuzzy Model for the Detection of Meat Spoilage using Multispectral Images
    Alshejari, Abeer
    Kodogiannis, Vassilis S.
    Petrounias, Ilias
    2015 IEEE INTERNATIONAL CONFERENCE ON FUZZY SYSTEMS (FUZZ-IEEE 2015), 2015,
  • [32] Distributed denial of service attacks detection in cloud computing using extreme learning machine
    Kushwah, Gopal Singh
    Ali, Syed Taqi
    INTERNATIONAL JOURNAL OF COMMUNICATION NETWORKS AND DISTRIBUTED SYSTEMS, 2019, 23 (03) : 328 - 351
  • [33] A Hybrid Defense Technique for ISP Against the Distributed Denial of Service Attacks
    Moon, Young Hoon
    Choi, Suk Bong
    Kim, Huy Kang
    Yoo, Changsok
    APPLIED MATHEMATICS & INFORMATION SCIENCES, 2014, 8 (05): : 2347 - 2359
  • [34] Groundwater level forecasting using ensemble coactive neuro-fuzzy inference system
    Boo, Kenneth Beng Wee
    El-Shafie, Ahmed
    Othman, Faridah
    Sherif, Mohsen
    Ahmed, Ali Najah
    SCIENCE OF THE TOTAL ENVIRONMENT, 2024, 912
  • [35] SQL Injection Attacks Detection and Prevention Based on Neuro-Fuzzy Technique
    Nofal, Doaa E.
    Amer, Abeer A.
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON ADVANCED INTELLIGENT SYSTEMS AND INFORMATICS 2019, 2020, 1058 : 722 - 738
  • [36] Reservoir outflow prediction using adaptive neuro-fuzzy interference system
    Tatavarthi, Ahi K. Pratyusha
    Vemuri, Jayaprakash
    Singh, Prabhakar
    INTERNATIONAL JOURNAL OF SYSTEM ASSURANCE ENGINEERING AND MANAGEMENT, 2024,
  • [37] An Adaptive Neuro-Fuzzy Model-Based Algorithm for Fault Detection in PV Systems
    Pa, Mary
    Uddin, Mohammad Nasir
    Rezaei, Nima
    IEEE TRANSACTIONS ON INDUSTRY APPLICATIONS, 2024, 60 (01) : 1919 - 1927
  • [38] An adaptive neuro-fuzzy inference system for sleep spindle detection
    Liang, Sheng-Fu
    Kuo, Chih-En
    Hu, Yu-Han
    Chen, Chun-Yu
    Li, Yu-Hung
    2012 INTERNATIONAL CONFERENCE ON FUZZY THEORY AND ITS APPLICATIONS (IFUZZY2012), 2012, : 369 - 373
  • [39] An ensemble method for feature selection and an integrated approach for mitigation of distributed denial of service attacks
    Chanu, Usham Sanjota
    Singh, Khundrakpam Johnson
    Chanu, Yambem Jina
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2022, 34 (13)
  • [40] Adaptive Neuro-Fuzzy Inference Systems for Modeling Greenhouse Climate
    Lachouri, Charaf Eddine
    Lafifi, Mohamed Mourad
    Mansouri, Khaled
    Belmeguenai, Aissa
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2016, 7 (01) : 96 - 100