Deep learning model for distributed denial of service (DDoS) detection

被引:0
|
作者
Tennakoon, Chaminda [1 ]
Fernando, Subha [2 ]
机构
[1] Informat Inst Technol, Dept Comp, Colombo, Sri Lanka
[2] Univ Moratuwa, Dept Computat Math, Moratuwa, Sri Lanka
来源
INTERNATIONAL JOURNAL OF ADVANCED AND APPLIED SCIENCES | 2022年 / 9卷 / 02期
关键词
Application-layer; DDoS detection autoencoder; Deep learning models; Cybersecurity; ATTACKS;
D O I
10.21833/ijaas.2022.02.012
中图分类号
O [数理科学和化学]; P [天文学、地球科学]; Q [生物科学]; N [自然科学总论];
学科分类号
07 ; 0710 ; 09 ;
摘要
Distributed denial of service (DDoS) attacks is one of the serious threats in the domain of cybersecurity where it affects the availability of online services by disrupting access to its legitimate users. The consequences of such attacks could be millions of dollars in worth since all of the online services are relying on high availability. The magnitude of DDoS attacks is ever increasing as attackers are smart enough to innovate their attacking strategies to expose vulnerabilities in the intrusion detection models or mitigation mechanisms. The history of DDoS attacks reflects that network and transport layers of the OSI model were the initial target of the attackers, but the recent history from the cybersecurity domain proves that the attacking momentum has shifted toward the application layer of the OSI model which presents a high degree of difficulty distinguishing the attack and benign traffics that make the combat against application-layer DDoS attack a sophisticated task. Striding for high accuracy with high DDoS classification recall is key for any DDoS detection mechanism to keep the reliability and trustworthiness of such a system. In this paper, a deep learning approach for application-layer DDoS detection is proposed by using an autoencoder to perform the feature selection and Deep neural networks to perform the attack classification. A popular benchmark dataset CIC DoS 2017 is selected by extracting the most appealing features from the packet flows. The proposed model has achieved an accuracy of 99.83% with a detection rate of 99.84% while maintaining the false-negative rate of 0.17%, which has the heights accuracy rate among the literature reviewed so far. (C) 2022 The Authors. Published by IASE.
引用
收藏
页码:109 / 118
页数:10
相关论文
共 50 条
  • [1] Distributed Denial of Service (DDoS) detection by traffic pattern analysis
    Thapngam, Theerasak
    Yu, Shui
    Zhou, Wanlei
    Makki, S. Kami
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2014, 7 (04) : 346 - 358
  • [2] DeepDetect: Detection of Distributed Denial of Service Attacks Using Deep Learning
    Asad, Muhammad
    Asim, Muhammad
    Javed, Talha
    Beg, Mirza O.
    Mujtaba, Hasan
    Abbas, Sohail
    COMPUTER JOURNAL, 2020, 63 (07) : 983 - 994
  • [3] Detecting Distributed Denial of Service in Network Traffic with Deep Learning
    Rusyaidi, Muhammad
    Jaf, Sardar
    Ibrahim, Zunaidi
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2022, 13 (01) : 34 - 41
  • [5] DIDDOS: An approach for detection and identification of Distributed Denial of Service (DDoS) cyberattacks using Gated Recurrent Units (GRU)
    Rehman, Saif ur
    Khaliq, Mubashir
    Imtiaz, Syed Ibrahim
    Rasool, Aamir
    Shafiq, Muhammad
    Javed, Abdul Rehman
    Jalil, Zunera
    Bashir, Ali Kashif
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2021, 118 : 453 - 466
  • [6] Cyber Security for Detecting Distributed Denial of Service Attacks in Agriculture 4.0: Deep Learning Model
    Aldhyani, Theyazn H. H.
    Alkahtani, Hasan
    MATHEMATICS, 2023, 11 (01)
  • [7] DDoS-AT-2022: a distributed denial of service attack dataset for evaluating DDoS defense system
    Mittal, Meenakshi
    Kumar, Krishan
    Behal, Sunny
    PROCEEDINGS OF THE INDIAN NATIONAL SCIENCE ACADEMY, 2023, 89 (02): : 306 - 324
  • [8] DDoS-AT-2022: a distributed denial of service attack dataset for evaluating DDoS defense system
    Meenakshi Mittal
    Krishan Kumar
    Sunny Behal
    Proceedings of the Indian National Science Academy, 2023, 89 : 306 - 324
  • [9] Distributed denial of service attack detection using autoencoder and deep neural networks
    Catak, Ferhat Ozgur
    Mustacoglu, Ahmet Fatih
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2019, 37 (03) : 3969 - 3979
  • [10] Distributed Denial of Service (DDoS) Mitigation Using Blockchain-A Comprehensive Insight
    Wani, Sharyar
    Imthiyas, Mohammed
    Almohamedh, Hamad
    Alhamed, Khalid M.
    Almotairi, Sultan
    Gulzar, Yonis
    SYMMETRY-BASEL, 2021, 13 (02): : 1 - 21