An unsupervised approach for the detection of zero-day distributed denial of service attacks in Internet of Things networks

被引:0
|
作者
Roopak, Monika [1 ]
Parkinson, Simon [2 ]
Tian, Gui Yun [3 ]
Ran, Yachao [3 ]
Khan, Saad [2 ]
Chandrasekaran, Balasubramaniyan [4 ]
机构
[1] Univ Bedfordshire, Luton, Beds, England
[2] Univ Huddersfield, Huddersfield, England
[3] Newcastle Univ, Newcastle Upon Tyne, England
[4] Florida Polytech Univ, Lakeland, FL USA
关键词
computer network security; Internet of Things; unsupervised learning;
D O I
10.1049/ntw2.12134
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The authors introduce an unsupervised Intrusion Detection System designed to detect zero-day distributed denial of service (DDoS) attacks in Internet of Things (IoT) networks. This system can identify anomalies without needing prior knowledge or training on attack information. Zero-day attacks exploit previously unknown vulnerabilities, making them hard to detect with traditional deep learning and machine learning systems that require pre-labelled data. Labelling data is also a time-consuming task for security experts. Therefore, unsupervised methods are necessary to detect these new threats. The authors focus on DDoS attacks, which have recently caused significant financial and service disruptions for many organisations. As IoT networks grow, these attacks become more sophisticated and harmful. The proposed approach detects zero-day DDoS attacks by using random projection to reduce data dimensionality and an ensemble model combining K-means, Gaussian mixture model, and one-class SVM with a hard voting technique for classification. The method was evaluated using the CIC-DDoS2019 dataset and achieved an accuracy of 94.55%, outperforming other state-of-the-art unsupervised learning methods. An unsupervised ensemble model for the detection of the distributed denial of service attacks in Internet of Things systems. image
引用
收藏
页码:513 / 527
页数:15
相关论文
共 50 条
  • [41] Signature Based Intrusion Detection for Zero-Day Attacks: (Not) A Closed Chapter?
    Holm, Hannes
    2014 47TH HAWAII INTERNATIONAL CONFERENCE ON SYSTEM SCIENCES (HICSS), 2014, : 4895 - 4904
  • [42] An Asset-Based Approach to Mitigate Zero-Day Ransomware Attacks
    Azzedin, Farag
    Suwad, Husam
    Rahman, Md Mahfuzur
    CMC-COMPUTERS MATERIALS & CONTINUA, 2022, 73 (02): : 3003 - 3020
  • [43] A Hybrid Detection Approach For Zero-day Polymorphic Shellcodes
    Chen Ting
    Zhang Xiaosong
    Liu Zhi
    2009 INTERNATIONAL CONFERENCE ON E-BUSINESS AND INFORMATION SYSTEM SECURITY, VOLS 1 AND 2, 2009, : 45 - 49
  • [44] A Novel Mechanism for Detection of Distributed Denial of Service Attacks
    Sen, Jaydip
    ADVANCED COMPUTING, PT III, 2011, 133 : 247 - 257
  • [45] Detection and Prevention of Distributed Denial of Service Attacks in VANETs
    Shabbir, Munazza
    Khan, Muazzam A.
    Khan, Umair Shafiq
    Saqib, Nazar A.
    2016 INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE & COMPUTATIONAL INTELLIGENCE (CSCI), 2016, : 970 - 974
  • [46] A mechanism for detection and prevention of distributed denial of service attacks
    Sen, Jaydip
    Chowdhury, Piyali Roy
    Sengupta, Indranil
    DISTRIBUTED COMPUTING AND NETWORKING, PROCEEDINGS, 2006, 4308 : 139 - 144
  • [47] IoTZeroJar: Towards a Honeypot Architecture for Detection of Zero-Day Attacks in IoT
    Ellouh, Mahmoud
    Ghaleb, Mustafa
    Felemban, Muhamad
    Proceedings - 2022 14th IEEE International Conference on Computational Intelligence and Communication Networks, CICN 2022, 2022, : 765 - 771
  • [48] A Review on Detection Approaches for Distributed Denial of Service Attacks
    Chaudhari, Rutika S.
    Talmale, G. R.
    PROCEEDINGS OF THE 2019 INTERNATIONAL CONFERENCE ON INTELLIGENT SUSTAINABLE SYSTEMS (ICISS 2019), 2019, : 323 - 327
  • [49] Anomaly Detection of Zero-Day Attacks Based on CNN and Regularization Techniques
    Ibrahim Hairab, Belal
    Aslan, Heba K.
    Elsayed, Mahmoud Said
    Jurcut, Anca D.
    Azer, Marianne A.
    ELECTRONICS, 2023, 12 (03)
  • [50] A Reinforcement Learning-Based Approach for Detection Zero-Day Malware Attacks on IoT System
    Ngo, Quoc-Dung
    Nguyen, Quoc-Huu
    ARTIFICIAL INTELLIGENCE TRENDS IN SYSTEMS, VOL 2, 2022, 502 : 381 - 394