Distributed denial of service attack detection using an ensemble of neural classifier

被引:91
|
作者
Kumar, P. Arun Raj [1 ]
Selvakumar, S. [1 ]
机构
[1] Natl Inst Technol, Dept Comp Sci & Engn, CDBR SSE Project Lab, Tiruchirappalli 620015, Tamil Nadu, India
关键词
DDoS; Collaborative environmet; Ensemble of neural networks; Machine learning; DDOS ATTACKS; IP; MARKING;
D O I
10.1016/j.comcom.2011.01.012
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The vulnerabilities in the Communication (TCP/IP) protocol stack and the availability of more sophisticated attack tools breed in more and more network hackers to attack the network intentionally or unintentionally, leading to Distributed Denial of Service (DDoS) attack. The DDoS attacks could be detected using the existing machine learning techniques such as neural classifiers. These classifiers lack generalization capabilities which result in less performance leading to high false positives. This paper evaluates the performance of a comprehensive set of machine learning algorithms for selecting the base classifier using the publicly available KDD Cup dataset. Based on the outcome of the experiments, Resilient Back Propagation (RBP) was chosen as base classifier for our research. The improvement in performance of the RBP classifier is the focus of this paper. Our proposed classification algorithm, RBPBoost, is achieved by combining ensemble of classifier outputs and Neyman Pearson cost minimization strategy, for final classification decision. Publicly available datasets such as KDD Cup, DARPA 1999, DARPA 2000, and CONFICKER were used for the simulation experiments. RBPBoost was trained and tested with DARPA, CONFICKER, and our own lab datasets. Detection accuracy and Cost per sample were the two metrics evaluated to analyze the performance of the RBPBoost classification algorithm. From the simulation results, it is evident that RBPBoost algorithm achieves high detection accuracy (99.4%) with fewer false alarms and outperforms the existing ensemble algorithms. RBPBoost algorithm outperforms the existing algorithms with maximum gain of 6.6% and minimum gain of 0.8%. (C) 2011 Elsevier B.V. All rights reserved.
引用
收藏
页码:1328 / 1341
页数:14
相关论文
共 50 条
  • [31] Noise-Robust Multilayer Perceptron Architecture for Distributed Denial of Service Attack Detection
    Maranhao, Joao Paulo A.
    da Costa, Joao Paulo C. L.
    de Freitas, Edison Pignaton
    Javidi, Elnaz
    de Sousa Jr, Rafael T.
    IEEE COMMUNICATIONS LETTERS, 2021, 25 (02) : 402 - 406
  • [32] An Experimental Detection of Distributed Denial of Service Attack in CDX 3 Platform Based on Snort
    Chen, Chin-Ling
    Lai, Jian Lin
    SENSORS, 2023, 23 (13)
  • [33] A Framework for Distributed Denial of Service Attack Detection and Reactive Countermeasure in Software Defined Network
    Sangodoyin, Abimbola
    Mohammed, Bashir
    Moyo, Sibusiso
    Awan, Irfan
    Disso, Jules Pagna
    2019 7TH INTERNATIONAL CONFERENCE ON FUTURE INTERNET OF THINGS AND CLOUD (FICLOUD 2019), 2019, : 80 - 87
  • [34] Quantum Entropy and Reinforcement Learning for Distributed Denial of Service Attack Detection in Smart Grid
    Said, Dhaou
    Bagaa, Miloud
    Oukaira, Aziz
    Lakhssassi, Ahmed
    IEEE ACCESS, 2024, 12 : 129858 - 129869
  • [35] Distributed Denial of Service (DDoS) Attacks Detection Using Machine Learning Prototype
    Hoyos Ll, Manuel S.
    Isaza E, Gustavo A.
    Velez, Jairo I.
    Castillo O, Luis
    DISTRIBUTED COMPUTING AND ARTIFICIAL INTELLIGENCE, (DCAI 2016), 2016, 474 : 33 - 41
  • [36] A robust tuned classifier-based distributed denial of service attacks detection for quality of service enhancement in software-defined network
    Kaur, Gaganjot
    Gupta, Prinima
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2022, 43 (03) : 2693 - 2710
  • [37] Detection of distributed denial of service attacks using statistical pre-processor and unsupervised neural networks
    Jalili, R
    Imani-Mehr, F
    Amini, M
    Shahriari, HR
    INFORMATION SECURITY PRACTICE AND EXPERIENCE, 2005, 3439 : 192 - 203
  • [38] Implementation of Honeypot to Detect and Prevent Distributed Denial of Service Attack
    Sembiring, Irwan
    2016 3RD INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY, COMPUTER, AND ELECTRICAL ENGINEERING (ICITACEE), 2016, : 345 - 350
  • [39] Detecting distributed denial of service attack traffic at the agent machines
    Laurens, Vicky
    El Saddik, Abdulmotaleb
    Dhar, Pulak
    Srivastava, Vineet
    2006 CANADIAN CONFERENCE ON ELECTRICAL AND COMPUTER ENGINEERING, VOLS 1-5, 2006, : 2278 - +
  • [40] The Store-and-Flood Distributed Reflective Denial of Service Attack
    Liu, Bingshuang
    Berg, Skyler
    Li, Jun
    Wei, Tao
    Zhang, Chao
    Han, Xinhui
    2014 23RD INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATION AND NETWORKS (ICCCN), 2014,