An unsupervised approach for the detection of zero-day distributed denial of service attacks in Internet of Things networks

被引:0
|
作者
Roopak, Monika [1 ]
Parkinson, Simon [2 ]
Tian, Gui Yun [3 ]
Ran, Yachao [3 ]
Khan, Saad [2 ]
Chandrasekaran, Balasubramaniyan [4 ]
机构
[1] Univ Bedfordshire, Luton, Beds, England
[2] Univ Huddersfield, Huddersfield, England
[3] Newcastle Univ, Newcastle Upon Tyne, England
[4] Florida Polytech Univ, Lakeland, FL USA
关键词
computer network security; Internet of Things; unsupervised learning;
D O I
10.1049/ntw2.12134
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The authors introduce an unsupervised Intrusion Detection System designed to detect zero-day distributed denial of service (DDoS) attacks in Internet of Things (IoT) networks. This system can identify anomalies without needing prior knowledge or training on attack information. Zero-day attacks exploit previously unknown vulnerabilities, making them hard to detect with traditional deep learning and machine learning systems that require pre-labelled data. Labelling data is also a time-consuming task for security experts. Therefore, unsupervised methods are necessary to detect these new threats. The authors focus on DDoS attacks, which have recently caused significant financial and service disruptions for many organisations. As IoT networks grow, these attacks become more sophisticated and harmful. The proposed approach detects zero-day DDoS attacks by using random projection to reduce data dimensionality and an ensemble model combining K-means, Gaussian mixture model, and one-class SVM with a hard voting technique for classification. The method was evaluated using the CIC-DDoS2019 dataset and achieved an accuracy of 94.55%, outperforming other state-of-the-art unsupervised learning methods. An unsupervised ensemble model for the detection of the distributed denial of service attacks in Internet of Things systems. image
引用
收藏
页码:513 / 527
页数:15
相关论文
共 50 条
  • [31] Distributed Denial of Service (DDoS) Attacks Detection: A Machine Learning Approach
    Samom, Premson Singh
    Taggu, Amar
    APPLIED SOFT COMPUTING AND COMMUNICATION NETWORKS, 2021, 187 : 75 - 87
  • [32] Combining Supervised and Unsupervised Learning for Zero-Day Malware Detection
    Comar, Prakash Mandayam
    Liu, Lei
    Saha, Sabyasachi
    Tan, Pang-Ning
    Nucci, Antonio
    2013 PROCEEDINGS IEEE INFOCOM, 2013, : 2022 - 2030
  • [33] Smart detection of denial of service (DoS) attacks in internet of vehicles (IoV) networks
    Helal, Maha
    Bakhamis, Mohammed
    Al-Akhras, Mousa
    Atawneh, Samer
    Al-Oqily, Ibrahim
    Kashmeery, Tariq
    INTERNATIONAL JOURNAL OF ADVANCED AND APPLIED SCIENCES, 2024, 11 (11): : 28 - 36
  • [34] Anomaly Detection Based on CNN and Regularization Techniques Against Zero-Day Attacks in IoT Networks
    Hairab, Belal Ibrahim
    Elsayed, Mahmoud Said
    Jurcut, Anca D.
    Azer, Marianne A.
    IEEE ACCESS, 2022, 10 : 98427 - 98440
  • [35] Distributed Detection and Response for the Mitigation of Distributed Denial of Service Attacks
    Grant, D. C.
    2018 32ND INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING (ICOIN), 2018, : 495 - 497
  • [36] Mitigating distributed denial of service attacks in satellite networks
    Usman, Muhammad
    Qaraqe, Marwa
    Asghar, Muhammad Rizwan
    Shafique Ansari, Imran
    TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2020, 31 (06):
  • [37] Detection of Denial of Service Attacks in Communication Networks
    Rios, Ana Laura Gonzalez
    Li, Zhida
    Bekshentayeva, Kamila
    Trajkovic, Ljiljana
    2020 IEEE INTERNATIONAL SYMPOSIUM ON CIRCUITS AND SYSTEMS (ISCAS), 2020,
  • [38] Distributed denial of service attacks and anonymous group authentication on the Internet
    Saxena, A
    Soh, B
    THIRD INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY AND APPLICATIONS, VOL 2, PROCEEDINGS, 2005, : 460 - 464
  • [39] Modeling of distributed denial of service attacks in wireless networks
    Huang, Q
    Kobayashi, H
    Liu, BD
    2003 IEEE PACIFIC RIM CONFERENCE ON COMMUNICATIONS, COMPUTERS, AND SIGNAL PROCESSING, VOLS 1 AND 2, CONFERENCE PROCEEDINGS, 2003, : 41 - 44
  • [40] Blockchain Based Solutions to Mitigate Distributed Denial of Service (DDoS) Attacks in the Internet of Things (IoT): A Survey
    Shah, Zawar
    Ullah, Imdad
    Li, Huiling
    Levula, Andrew
    Khurshid, Khawar
    SENSORS, 2022, 22 (03)