An ensemble method for feature selection and an integrated approach for mitigation of distributed denial of service attacks

被引:3
作者
Chanu, Usham Sanjota [1 ]
Singh, Khundrakpam Johnson [1 ]
Chanu, Yambem Jina [1 ]
机构
[1] Natl Inst Technol, Dept Comp Sci & Engn, Imphal 795004, Manipur, India
关键词
data mining; firewall; information security; intrusion detection; intrusion prevention; machine learning; LAYER DDOS ATTACK; DEFENSE;
D O I
10.1002/cpe.6919
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Distributed denial of service attacks (DDoS) penetrate numerous computer system and implant malicious codes thereby making them ready for launching a collaborative attack. These attacks paralyze the target system mainly the web server by exhausting their network resources of the target server. The threats posed by DDoS attacks on the Internet demands for effective detection and mitigation methods of these attacks. In the paper, we proposed an integrated method for detection and mitigation of DDoS attack using machine learning and a line of defenses respectively. The detection phase consists of feature selection through ensemble feature selection algorithm and classification using machine learning algorithm. Feature selection algorithms are important as they reduce the dimension of the dataset. The selection of an efficient classification model will improve the detection rate of the proposed system. In the mitigation phase, we introduce two lines of defense to minimize the exhaustion of the victim server's resources. Using the existing dataset, we show experimentally that it is possible to detect the presence of attacks and mitigate them to a minimum level. The proposed integrated method yields an accuracy of 97.8% in detecting the attacks and able to reduce the utilization of processors upto an average of 25.95%.
引用
收藏
页数:18
相关论文
共 39 条
[1]   SDN-Based Load Balancing Service for Cloud Servers [J].
Abdelltif, Ahmed Abdelaziz ;
Ahmed, Ejaz ;
Fong, Ang Tang ;
Gani, Abdullah ;
Imran, Muhammad .
IEEE COMMUNICATIONS MAGAZINE, 2018, 56 (08) :106-111
[2]  
Braga R, 2010, C LOCAL COMPUT NETW, P408, DOI 10.1109/LCN.2010.5735752
[3]  
Cloud Availability Measurement Dataset, PRED ID USC LAND CLO
[4]   A Difference Resolution Approach to Compressing Access Control Lists [J].
Daly, James ;
Liu, Alex X. ;
Torng, Eric .
IEEE-ACM TRANSACTIONS ON NETWORKING, 2016, 24 (01) :610-623
[5]   A Holistic Approach for Detecting DDoS Attacks by Using Ensemble Unsupervised Machine Learning [J].
Das, Saikat ;
Venugopal, Deepak ;
Shiva, Sajjan .
ADVANCES IN INFORMATION AND COMMUNICATION, VOL 2, 2020, 1130 :721-738
[6]   Empirical Evaluation of the Ensemble Framework for Feature Selection in DDoS Attack [J].
Das, Saikat ;
Venugopal, Deepak ;
Shiva, Sajjan ;
Sheldon, Frederick T. .
2020 7TH IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND CLOUD COMPUTING (CSCLOUD 2020)/2020 6TH IEEE INTERNATIONAL CONFERENCE ON EDGE COMPUTING AND SCALABLE CLOUD (EDGECOM 2020), 2020, :56-61
[7]   DDoS Intrusion Detection through Machine Learning Ensemble [J].
Das, Saikat ;
Mahfouz, Ahmed M. ;
Venugopal, Deepak ;
Shiva, Sajjan .
2019 COMPANION OF THE 19TH IEEE INTERNATIONAL CONFERENCE ON SOFTWARE QUALITY, RELIABILITY AND SECURITY (QRS-C 2019), 2019, :471-477
[8]   ICMPv6-Based DoS and DDoS Attacks and Defense Mechanisms: Review [J].
Elejla, Omar E. ;
Anbar, Mohammed ;
Belaton, Bahari .
IETE TECHNICAL REVIEW, 2017, 34 (04) :390-407
[9]   DDoSNet: A Deep-Learning Model for Detecting Network Attacks [J].
Elsayed, Mahmoud Said ;
Nhien-An Le-Khac ;
Dev, Soumyabrata ;
Jurcut, Anca Delia .
2020 21ST IEEE INTERNATIONAL SYMPOSIUM ON A WORLD OF WIRELESS, MOBILE AND MULTIMEDIA NETWORKS (IEEE WOWMOM 2020), 2020, :391-396
[10]  
Hall MA, 1998, AUST COMP S, V20, P181