MF-CNN: a New Approach for LDoS Attack Detection Based on Multi-feature Fusion and CNN

被引:28
作者
Tang, Dan [1 ]
Tang, Liu [1 ]
Shi, Wei [1 ]
Zhan, Sijia [1 ]
Yang, Qiuwei [1 ]
机构
[1] Hunan Univ, Coll Comp Sci & Elect Engn, Changsha 410082, Peoples R China
基金
中国国家自然科学基金;
关键词
Convolution neural network; Deep learning; LDoS attack; Multi-feature fusion;
D O I
10.1007/s11036-019-01506-1
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Low-rate denial-of-service (LDoS) attack reduce the performance of network services by periodically sending short-term and high-pulse packets. The behavior of LDoS attack is indistinguishable from normal traffic due to its low average rate. Many networks do not have an effective mechanism to deal with the threat from LDoS attack, including the emerging Internet of Things. When LDoS attack occurs, multiple features of network will change. It is difficult to describe the state of the whole network by one feature. So it needs many features to precisely represent the state of the network. In this paper, we propose a LDoS attack detection method based on multi-feature fusion and convolution neural network(CNN). In this method, we compute a variety of network features and fuse them into a feature map, which will be used to characterize the state of the network. CNN model is an excellent classification algorithm for image recognition in the field of deep learning. It can distinguish the difference between feature maps and detect the feature maps which contain LDoS attack. We validate and evaluate our method by conducting experiments on NS2 simulation platform and test-bed platform. The experimental results show that our method can detect LDoS attack effectively.
引用
收藏
页码:1705 / 1722
页数:18
相关论文
共 30 条
  • [1] Low rate cloud DDoS attack defense method based on power spectral density analysis
    Agrawal, Neha
    Tapaswi, Shashikala
    [J]. INFORMATION PROCESSING LETTERS, 2018, 138 : 44 - 50
  • [2] Belsare SC, 2016, INT J RES COMPUT INF, V1, P19
  • [3] [陈伟宏 Chen Weihong], 2017, [自动化学报, Acta Automatica Sinica], V43, P1886
  • [4] Chen Y, 2005, ACM T INFORM SYST SE, P30
  • [5] Chen ZM, 2017, 2017 ZOOMING INNOVATION IN CONSUMER ELECTRONICS INTERNATIONAL CONFERENCE (ZINC), P13, DOI 10.1109/ZINC.2017.7968651
  • [6] Spectral Analysis of Low Rate of Denial of Service Attacks Detection based on Fisher and Siegel Tests
    Cotae, Paul
    Kang, Myong
    Velazquez, Alexander
    [J]. 2016 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2016,
  • [7] Dan Tang, 2018, Information and Communications Security. 20th International Conference, ICICS 2018. Proceedings: Lecture Notes in Computer Science (LNCS 11149), P92, DOI 10.1007/978-3-030-01950-1_6
  • [8] Guan L, 2016, RES NETWORK SECURITY
  • [9] MAF-SAM: An effective method to perceive data plane threats of inter domain routing system
    Guo, Yi
    Duan, Haixin
    Chen, Jikun
    Miao, Fu
    [J]. COMPUTER NETWORKS, 2016, 110 : 69 - 78
  • [10] SDN Based Collaborative Scheme for Mitigation of DDoS Attacks
    Hameed, Sufian
    Khan, Hassan Ahmed
    [J]. FUTURE INTERNET, 2018, 10 (03)