Distributed denial of service attack detection using an ensemble of neural classifier

被引:91
|
作者
Kumar, P. Arun Raj [1 ]
Selvakumar, S. [1 ]
机构
[1] Natl Inst Technol, Dept Comp Sci & Engn, CDBR SSE Project Lab, Tiruchirappalli 620015, Tamil Nadu, India
关键词
DDoS; Collaborative environmet; Ensemble of neural networks; Machine learning; DDOS ATTACKS; IP; MARKING;
D O I
10.1016/j.comcom.2011.01.012
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The vulnerabilities in the Communication (TCP/IP) protocol stack and the availability of more sophisticated attack tools breed in more and more network hackers to attack the network intentionally or unintentionally, leading to Distributed Denial of Service (DDoS) attack. The DDoS attacks could be detected using the existing machine learning techniques such as neural classifiers. These classifiers lack generalization capabilities which result in less performance leading to high false positives. This paper evaluates the performance of a comprehensive set of machine learning algorithms for selecting the base classifier using the publicly available KDD Cup dataset. Based on the outcome of the experiments, Resilient Back Propagation (RBP) was chosen as base classifier for our research. The improvement in performance of the RBP classifier is the focus of this paper. Our proposed classification algorithm, RBPBoost, is achieved by combining ensemble of classifier outputs and Neyman Pearson cost minimization strategy, for final classification decision. Publicly available datasets such as KDD Cup, DARPA 1999, DARPA 2000, and CONFICKER were used for the simulation experiments. RBPBoost was trained and tested with DARPA, CONFICKER, and our own lab datasets. Detection accuracy and Cost per sample were the two metrics evaluated to analyze the performance of the RBPBoost classification algorithm. From the simulation results, it is evident that RBPBoost algorithm achieves high detection accuracy (99.4%) with fewer false alarms and outperforms the existing ensemble algorithms. RBPBoost algorithm outperforms the existing algorithms with maximum gain of 6.6% and minimum gain of 0.8%. (C) 2011 Elsevier B.V. All rights reserved.
引用
收藏
页码:1328 / 1341
页数:14
相关论文
共 50 条
  • [1] Distributed denial of service attack detection using autoencoder and deep neural networks
    Catak, Ferhat Ozgur
    Mustacoglu, Ahmet Fatih
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2019, 37 (03) : 3969 - 3979
  • [2] Improving distributed denial of service attack detection using supervised machine learning
    Fathima A.
    Devi G.S.
    Faizaanuddin M.
    Measurement: Sensors, 2023, 30
  • [3] Evaluation of Classification algorithms for Distributed Denial of Service Attack Detection
    Gohil, Maulik
    Kumar, Sathish
    2020 IEEE THIRD INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE AND KNOWLEDGE ENGINEERING (AIKE 2020), 2020, : 138 - 141
  • [4] Distributed Denial of Service attack on Cloud: Detection and Prevention
    Khadka, Bikram
    Withana, Chandana
    Alsadoon, Abeer
    Elchouemi, Amr
    2015 INTERNATIONAL CONFERENCE AND WORKSHOP ON COMPUTING AND COMMUNICATION (IEMCON), 2015,
  • [5] Distributed Denial of Service Attack Detection Using Machine Learning and Class Oversampling
    Shafin, Sakib Shahriar
    Prottoy, Sakir Adnan
    Abbas, Saif
    Bin Hakim, Safayat
    Chowdhury, Abdullahi
    Rashid, Md Mamunur
    APPLIED INTELLIGENCE AND INFORMATICS, AII 2021, 2021, 1435 : 247 - 259
  • [6] A distributed framework for distributed denial-of-service attack detection in internet of things environments using deep learning
    Silas W.A.
    Nderu L.
    Ndirangu D.
    International Journal of Web Engineering and Technology, 2024, 19 (01) : 67 - 87
  • [7] Majority Vote-Based Ensemble Approach for Distributed Denial of Service Attack Detection in Cloud Computing
    Alqarni A.A.
    Journal of Cyber Security and Mobility, 2022, 11 (02): : 265 - 278
  • [8] Tensor based framework for Distributed Denial of Service attack detection
    Maranhao, Joao Paulo A.
    da Costa, Joao Paulo C. L.
    Javidi, Elnaz
    Borges de Andrade, Cesar A.
    de Sousa Jr, Rafael T.
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2021, 174
  • [9] THE SLOW HTTP DISTRIBUTED DENIAL OF SERVICE ATTACK DETECTION IN CLOUD
    Dhanapal, A.
    Nithyanandam, P.
    SCALABLE COMPUTING-PRACTICE AND EXPERIENCE, 2019, 20 (02): : 285 - 297
  • [10] Detection of distributed denial of service attack using enhanced adaptive deep dilated ensemble with hybrid meta-heuristic approach
    Aliar, Ahamed Ali Samsu
    Gowri, V.
    Abins, A. Arockia
    TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2024, 35 (01)