Examining the Robustness of Learning-Based DDoS Detection in Software Defined Networks

被引:6
|
作者
Abusnaina, Ahmed [1 ]
Khormali, Aminollah [1 ]
Nyang, DaeHun [2 ]
Yuksel, Murat [1 ]
Mohaisen, Aziz [1 ]
机构
[1] Univ Cent Florida, Orlando, FL 32816 USA
[2] Inha Univ, Incheon, South Korea
来源
2019 IEEE CONFERENCE ON DEPENDABLE AND SECURE COMPUTING (DSC) | 2019年
关键词
Intrusion Detection Systems; Deep Learning; Adversarial Machine Learning; Software Defined Networking;
D O I
10.1109/dsc47296.2019.8937669
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
With the rapid development of Software-Defined Networking (SDN) advocating a centralized view of networks, efficient and reliable Distributed Denial of Service (DDoS) defenses are necessary to protect the centralized SDN controller. Recently, an amalgamation of work has realized such defenses using Deep Learning (DL) based algorithms. Although DL-based algorithms are generally prone to adversarial learning attacks, the extent to which those attacks are applicable to DDoS defenses in SDN is unexamined. In this work, we explore the robustness of DL-based DDoS defenses in SDN against adversarial learning attacks. First, we investigate generic off-the-shelf adversarial attacks to test the robustness of DDoS defenses in SDN, and demonstrate that while they lead to misclassification, these attacks do not preserve the characteristics of flows. As a result, we propose Flow-Merge for realistic adversarial flows while achieving a high evasion rate, with both targeted and untargeted misclassification attacks. The proposed Flow-Merge is able to force the DL-based DDoS defenses to misclassify 100% of benign flows as malicious, while preserving original characteristics of flows. Using state-of-the-art defenses, we show that the adversarial flows generated using Flow-Merge are difficult to detect, with only 49.31% detection rate when using adversarial training.
引用
收藏
页码:17 / 24
页数:8
相关论文
共 50 条
  • [1] Examining the Security of DDoS Detection Systems in Software Defined Networks
    Abusnaina, Ahmed
    Nyang, DaeHun
    Yuksel, Murat
    Mohaisen, Aziz
    CONEXT'19 COMPANION: PROCEEDINGS OF THE 15TH INTERNATIONAL CONFERENCE ON EMERGING NETWORKING EXPERIMENTS AND TECHNOLOGIES, 2019, : 49 - 50
  • [2] Entropy based DDoS Detection in Software Defined Networks
    Fioravanti, Giovanni
    Spina, Mattia Giovanni
    De Rango, Floriano
    2023 IEEE 20TH CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE, CCNC, 2023,
  • [3] An entropy and machine learning based approach for DDoS attacks detection in software defined networks
    Hassan, Amany I.
    Abd El Reheem, Eman
    Guirguis, Shawkat K.
    SCIENTIFIC REPORTS, 2024, 14 (01):
  • [4] Towards a machine learning-based framework for DDOS attack detection in software-defined IoT (SD-IoT) networks
    Bhayo, Jalal
    Shah, Syed Attique
    Hameed, Sufian
    Ahmed, Awais
    Nasir, Jamal
    Draheim, Dirk
    ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2023, 123
  • [5] A DDoS Detection Method Based on Feature Engineering and Machine Learning in Software-Defined Networks
    Liu, Zhenpeng
    Wang, Yihang
    Feng, Fan
    Liu, Yifan
    Li, Zelin
    Shan, Yawei
    SENSORS, 2023, 23 (13)
  • [6] Edge DDoS Attack Detection Method Based on Software Defined Networks
    Ren, Gangsheng
    Zhang, Yang
    Zhang, Shukui
    Long, Hao
    ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, ICA3PP 2021, PT I, 2022, 13155 : 597 - 611
  • [7] Detection and Mitigation of ICMP-based DDoS in Software Defined Networks
    Shehabat, Marah M.
    Shurman, Mohammad M.
    2024 15TH INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION SYSTEMS, ICICS 2024, 2024,
  • [8] Mitigation and Detection of DDoS Attacks in Software Defined Networks
    Murtuza, Shariq
    Asawa, Krishna
    2018 ELEVENTH INTERNATIONAL CONFERENCE ON CONTEMPORARY COMPUTING (IC3), 2018, : 389 - 391
  • [9] A Survey of Low Rate DDoS Detection Techniques Based on Machine Learning in Software-Defined Networks
    Alashhab, Abdussalam Ahmed
    Zahid, Mohd Soperi Mohd
    Azim, Mohamed A.
    Daha, Muhammad Yunis
    Isyaku, Babangida
    Ali, Shimhaz
    SYMMETRY-BASEL, 2022, 14 (08):
  • [10] Toward Network-based DDoS Detection in Software-defined Networks
    Jevtic, Stefan
    Lotfalizadeh, Hamidreza
    Kim, Dongsoo S.
    PROCEEDINGS OF THE 12TH INTERNATIONAL CONFERENCE ON UBIQUITOUS INFORMATION MANAGEMENT AND COMMUNICATION (IMCOM 2018), 2018,