A Lightweight Model for DDoS Attack Detection Using Machine Learning Techniques

被引:6
|
作者
Sadhwani, Sapna [1 ]
Manibalan, Baranidharan [1 ]
Muthalagu, Raja [1 ]
Pawar, Pranav [1 ]
机构
[1] Birla Inst Technol & Sci Pilani, Dept Comp Sci, Dubai Campus, Dubai 345055, U Arab Emirates
来源
APPLIED SCIENCES-BASEL | 2023年 / 13卷 / 17期
关键词
machine learning; BOT-IOT; TON-IOT; DDoS; SMOTE; IoT; logistic regression; KNN; ANN; random forest; naive bayes; IOT;
D O I
10.3390/app13179937
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
The study in this paper characterizes lightweight IoT networks as being established by devices with few computer resources, such as reduced battery life, processing power, memory, and, more critically, minimal security and protection, which are easily vulnerable to DDoS attacks and propagating malware. A DDoS attack detection model is crucial for attacks in various industries, ensuring the availability and reliability of their networks and systems. The model distinguishes between legitimate and malicious traffic by analyzing network traffic patterns and identifying anomalies. This safeguards critical infrastructure, preserves business continuity, and protects the user experience, minimizing the impact of DDoS attacks. Numerous scholars have studied the notion that protecting lightweight IoT networks essentially requires improving intrusion detection systems. This research is valuable, as it follows a tailored pre-processing methodology specific to IoT network challenges, addressing a pressing need in cybersecurity by focusing on a growing concern related to IoT devices and DDoS attacks, enhancing the security of essential network systems in various industries by effectively detecting DDoS attacks, and developing a lightweight intrusion detection system that aligns with the limited resources of IoT devices. This manuscript proposes a compact and lightweight intrusion detection system that blends machine learning classifiers with a fresh approach to data pre-processing. The handling of missing values, data standardization using Standard Scalar, feature selection using ExtraTreeClassifier wherein only the 15 best features are extracted, and anomaly detection using a classifier are performed. The network dataset of TON-IOT and BOT-IOT datasets is used for experiments, specifically binary classifications and multiple-class classification for the experiment with DDoS and all attacks, respectively. There is an imbalance between the TON-IOT and BOT-IOT attack classes. In trials using the TON-IOT and BOT-IOT datasets, the classes were balanced using several iterations of the SMOTE approach. This research provides a number of classifier types, namely logistic regression, random forest, naive bayes, artificial neural network, and k nearest neighbor algorithms, which are used to build a lightweight intrusion detection system that is ideally suited for protecting against DDoS attacks in IoT networks. The time taken to train and predict the DDoS attacks is also implemented. Random forest performed well under TON-IOT and naive bayes performed well under BOT-IOT under binary and multiple-class classification, achieving an accuracy of 100% with less training and prediction time.
引用
收藏
页数:31
相关论文
共 50 条
  • [1] EFFICIENT DDoS ATTACK DETECTION USING MACHINE LEARNING TECHNIQUES
    Nazarudeen, Fathima
    Sundar, Sumod
    [J]. 2022 IEEE INTERNATIONAL POWER AND RENEWABLE ENERGY CONFERENCE, IPRECON, 2022,
  • [2] DDoS Attack Detection on IoT Devices Using Machine Learning Techniques
    Kumar, Sunil
    Sahu, Rohit Kumar
    Rudra, Bhawana
    [J]. INTELLIGENT SYSTEMS DESIGN AND APPLICATIONS, ISDA 2021, 2022, 418 : 787 - 794
  • [3] DDOS Attack Identification using Machine Learning Techniques
    Peneti, Subhashini
    Hemalatha, E.
    [J]. 2021 INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATION AND INFORMATICS (ICCCI), 2021,
  • [4] DDoS Attack Detection using Machine Learning Techniques in Cloud Computing Environments
    Zekri, Marwane
    El Kafhali, Said
    Aboutabit, Noureddine
    Saadi, Youssef
    [J]. PROCEEDINGS OF 2017 3RD INTERNATIONAL CONFERENCE OF CLOUD COMPUTING TECHNOLOGIES AND APPLICATIONS (CLOUDTECH), 2017, : 236 - 242
  • [5] Detection of DDoS attack in IoT traffic using ensemble machine learning techniques
    Pandey, Nimisha
    Mishra, Pramod Kumar
    [J]. NETWORKS AND HETEROGENEOUS MEDIA, 2023, 18 (04) : 1393 - 1408
  • [6] Detection of DDoS Attack in IoT Using Machine Learning
    Kumar, Naveen
    Aleem, Abdul
    Kumar, Sachin
    [J]. ADVANCED NETWORK TECHNOLOGIES AND INTELLIGENT COMPUTING, ANTIC 2021, 2022, 1534 : 190 - 199
  • [7] Cybersecurity Attack Detection Model, Using Machine Learning Techniques
    Avci, Isa
    Koca, Murat
    [J]. ACTA POLYTECHNICA HUNGARICA, 2023, 20 (07) : 29 - 44
  • [8] DDoS attack detection in ISP domain using machine learning
    Sahu, Swati
    Verma, Amit
    [J]. 2019 5TH INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION, CONTROL AND AUTOMATION (ICCUBEA), 2019,
  • [9] DDoS Attack Detection and Mitigation in SDN using Machine Learning
    Khashab, Fatima
    Moubarak, Joanna
    Feghali, Antoine
    Bassil, Carole
    [J]. PROCEEDINGS OF THE 2021 IEEE 7TH INTERNATIONAL CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2021): ACCELERATING NETWORK SOFTWARIZATION IN THE COGNITIVE AGE, 2021, : 395 - 401
  • [10] DDoS Detection in SDN using Machine Learning Techniques
    Nadeem, Muhammad Waqas
    Goh, Hock Guan
    Ponnusamy, Vasaki
    Aun, Yichiet
    [J]. CMC-COMPUTERS MATERIALS & CONTINUA, 2022, 71 (01): : 771 - 789