Deep learning model for distributed denial of service (DDoS) detection

被引:0
|
作者
Tennakoon, Chaminda [1 ]
Fernando, Subha [2 ]
机构
[1] Informat Inst Technol, Dept Comp, Colombo, Sri Lanka
[2] Univ Moratuwa, Dept Computat Math, Moratuwa, Sri Lanka
来源
INTERNATIONAL JOURNAL OF ADVANCED AND APPLIED SCIENCES | 2022年 / 9卷 / 02期
关键词
Application-layer; DDoS detection autoencoder; Deep learning models; Cybersecurity; ATTACKS;
D O I
10.21833/ijaas.2022.02.012
中图分类号
O [数理科学和化学]; P [天文学、地球科学]; Q [生物科学]; N [自然科学总论];
学科分类号
07 ; 0710 ; 09 ;
摘要
Distributed denial of service (DDoS) attacks is one of the serious threats in the domain of cybersecurity where it affects the availability of online services by disrupting access to its legitimate users. The consequences of such attacks could be millions of dollars in worth since all of the online services are relying on high availability. The magnitude of DDoS attacks is ever increasing as attackers are smart enough to innovate their attacking strategies to expose vulnerabilities in the intrusion detection models or mitigation mechanisms. The history of DDoS attacks reflects that network and transport layers of the OSI model were the initial target of the attackers, but the recent history from the cybersecurity domain proves that the attacking momentum has shifted toward the application layer of the OSI model which presents a high degree of difficulty distinguishing the attack and benign traffics that make the combat against application-layer DDoS attack a sophisticated task. Striding for high accuracy with high DDoS classification recall is key for any DDoS detection mechanism to keep the reliability and trustworthiness of such a system. In this paper, a deep learning approach for application-layer DDoS detection is proposed by using an autoencoder to perform the feature selection and Deep neural networks to perform the attack classification. A popular benchmark dataset CIC DoS 2017 is selected by extracting the most appealing features from the packet flows. The proposed model has achieved an accuracy of 99.83% with a detection rate of 99.84% while maintaining the false-negative rate of 0.17%, which has the heights accuracy rate among the literature reviewed so far. (C) 2022 The Authors. Published by IASE.
引用
收藏
页码:109 / 118
页数:10
相关论文
共 50 条
  • [41] Majority Vote-Based Ensemble Approach for Distributed Denial of Service Attack Detection in Cloud Computing
    Alqarni A.A.
    Journal of Cyber Security and Mobility, 2022, 11 (02): : 265 - 278
  • [42] Modeling Distributed Denial of Service Attack in Advanced Metering Infrastructure
    Guo, Yonghe
    Ten, Chee-Wooi
    Hu, Shiyan
    Weaver, Wayne W.
    2015 IEEE POWER & ENERGY SOCIETY INNOVATIVE SMART GRID TECHNOLOGIES CONFERENCE (ISGT), 2015,
  • [43] Federated Incremental Learning Based DDoS Attack Detection Model in SDN Environment
    Liu, Yan-Hua
    Fang, Wen-Yu
    Guo, Wen-Zhong
    Zhao, Bao-Kang
    Huang, Wei
    Jisuanji Xuebao/Chinese Journal of Computers, 2024, 47 (12): : 2852 - 2866
  • [44] A Survey on HTTP Flooding-A Distributed Denial of Service Attack
    Khandare, Hrishikesh
    Jain, Saurabh
    Doriya, Rajesh
    PERVASIVE COMPUTING AND SOCIAL NETWORKING, ICPCSN 2022, 2023, 475 : 39 - 52
  • [45] Performance evaluation of machine learning models for distributed denial of service attack detection using improved feature selection and hyper-parameter optimization techniques
    Habib, Beenish
    Khursheed, Farida
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2022, 34 (26)
  • [46] Detection of Denial-of-Service Attack in Wireless Sensor Networks: A Lightweight Machine Learning Approach
    Elsadig, Muawia A.
    IEEE ACCESS, 2023, 11 : 83537 - 83552
  • [47] Detection of DDoS based on Gray Level Co-occurrence Matrix theory and deep learning
    Shi, Jiayu
    Wu, Bin
    2020 5TH INTERNATIONAL CONFERENCE ON MECHANICAL, CONTROL AND COMPUTER ENGINEERING (ICMCCE 2020), 2020, : 1615 - 1618
  • [48] A robust tuned classifier-based distributed denial of service attacks detection for quality of service enhancement in software-defined network
    Kaur, Gaganjot
    Gupta, Prinima
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2022, 43 (03) : 2693 - 2710
  • [49] Distributed denial of service attack prediction: Challenges, open issues and opportunities
    de Neira, Anderson Bergamini
    Kantarci, Burak
    Nogueira, Michele
    COMPUTER NETWORKS, 2023, 222
  • [50] A Low-Cost Distributed Denial-of-Service Attack Architecture
    Huang, Kaifan
    Yang, Lu-Xing
    Yang, Xiaofan
    Xiang, Yong
    Tang, Yuan Yan
    IEEE ACCESS, 2020, 8 : 42111 - 42119