Multiclass Machine Learning Based Botnet Detection in Software Defined Networks

被引:0
|
作者
Tariq, Farhan [1 ]
Baig, Shamim [2 ]
机构
[1] Ctr Adv Studies Engn, Elect & Comp Engn, Islamabad, Pakistan
[2] HITEC Univ, Comp Sci & Engn, Taxila, Pakistan
关键词
botnet detection; malware; Multiclass machine learning; NBA; SDN; TSDR; OpenFlow; Opendaylight; flows;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Continuously evolving nature of botnet by using innovative approaches and technologies derives the need for continuous improvement of botnet detection solutions. The state of the art network approaches in literature targeting network header level information only for behavioral-based detection. These techniques applying machine learning algorithms to automatically detect botnet patterns from network flows. The current work in flow-based approaches exploring SDNs to overcome traditional IP network complexities. The Software defined network technology platform with centralized visibility and control provide an opportunity to redesign these approaches. The current SDNs based proposed approaches apply binary classification to decide if the detected flow belongs to a botnet or not. This work proposed a multiclass machine learning based approach to address botnet problem in SDNs. The proposed scheme applies multiple binary classifiers each trained for a specific type of botnet class. These focused classifiers performed better in the detection of the specific type of botnet. The proposed approach uses the flow trace concept. The features are extracted for each detected flow trace and fed into these focused classifiers. These features are examined by all classifiers and detected label is added for each processed flow trace. These labels are aggregated in the second stage to decide if a flow trace belongs to any botnet class or not. This additional information of a class of the detected botnet trace is helpful during the incident response process. The experiments for evaluation of the proposed work are performed on real-world traffic traces and the result shows promising detection rate with the capability to detect unknown botnet.
引用
收藏
页码:150 / 156
页数:7
相关论文
共 50 条
  • [21] Exploring machine-learning-based control plane intrusion detection techniques in software defined optical networks
    Zhang, Huibin
    Wang, Yuqiao
    Chen, Haoran
    Zhao, Yongli
    Zhang, Jie
    OPTICAL FIBER TECHNOLOGY, 2017, 39 : 37 - 42
  • [22] Software Defined Machine Learning Based Anomaly Detection in Fog Based IoT Network
    Shafi, Qaisar
    Qaisar, Saad
    Basit, Abdul
    COMPUTATIONAL SCIENCE AND ITS APPLICATIONS, ICCSA 2019, PT IV, 2019, 11622 : 611 - 621
  • [23] The Role of Machine Learning in Botnet Detection
    Miller, Sean
    Busby-Earle, Curtis
    2016 11TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2016, : 359 - 364
  • [24] Botnet Detection using Machine Learning
    Haq, Shamsul
    Singh, Yashwant
    2018 FIFTH INTERNATIONAL CONFERENCE ON PARALLEL, DISTRIBUTED AND GRID COMPUTING (IEEE PDGC), 2018, : 240 - 245
  • [25] Dimensionality Reduction for Machine Learning Based IoT Botnet Detection
    Bahsi, Hayretdin
    Nomm, Sven
    La Torre, Fabio Benedetto
    2018 15TH INTERNATIONAL CONFERENCE ON CONTROL, AUTOMATION, ROBOTICS AND VISION (ICARCV), 2018, : 1857 - 1862
  • [26] Detecting and Mitigating Botnet Attacks in Software-Defined Networks Using Deep Learning Techniques
    Nadeem, Muhammad Waqas
    Goh, Hock Guan
    Aun, Yichiet
    Ponnusamy, Vasaki
    IEEE ACCESS, 2023, 11 (49153-49171) : 49153 - 49171
  • [27] Flow Based Botnet Traffic Detection Using Machine Learning
    Gahelot, Parul
    Dayal, Neelam
    PROCEEDINGS OF ICETIT 2019: EMERGING TRENDS IN INFORMATION TECHNOLOGY, 2020, 605 : 418 - 426
  • [28] Examining the Robustness of Learning-Based DDoS Detection in Software Defined Networks
    Abusnaina, Ahmed
    Khormali, Aminollah
    Nyang, DaeHun
    Yuksel, Murat
    Mohaisen, Aziz
    2019 IEEE CONFERENCE ON DEPENDABLE AND SECURE COMPUTING (DSC), 2019, : 17 - 24
  • [29] Attack detection analysis in software-defined networks using various machine learning method
    Wang, Yonghong
    Wang, Xiaofeng
    Ariffin, Mazeyanti Mohd
    Abolfathi, Masoumeh
    Alqhatani, Abdulmajeed
    Almutairi, Laila
    COMPUTERS & ELECTRICAL ENGINEERING, 2023, 108
  • [30] Detection of Distributed Denial of Service Attacks using Machine Learning Algorithms in Software Defined Networks
    Meti, Nisharani
    Narayan, D. G.
    Baligar, V. P.
    2017 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2017, : 1366 - 1371