Distributed denial of service attack detection using an ensemble of neural classifier

被引:91
|
作者
Kumar, P. Arun Raj [1 ]
Selvakumar, S. [1 ]
机构
[1] Natl Inst Technol, Dept Comp Sci & Engn, CDBR SSE Project Lab, Tiruchirappalli 620015, Tamil Nadu, India
关键词
DDoS; Collaborative environmet; Ensemble of neural networks; Machine learning; DDOS ATTACKS; IP; MARKING;
D O I
10.1016/j.comcom.2011.01.012
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The vulnerabilities in the Communication (TCP/IP) protocol stack and the availability of more sophisticated attack tools breed in more and more network hackers to attack the network intentionally or unintentionally, leading to Distributed Denial of Service (DDoS) attack. The DDoS attacks could be detected using the existing machine learning techniques such as neural classifiers. These classifiers lack generalization capabilities which result in less performance leading to high false positives. This paper evaluates the performance of a comprehensive set of machine learning algorithms for selecting the base classifier using the publicly available KDD Cup dataset. Based on the outcome of the experiments, Resilient Back Propagation (RBP) was chosen as base classifier for our research. The improvement in performance of the RBP classifier is the focus of this paper. Our proposed classification algorithm, RBPBoost, is achieved by combining ensemble of classifier outputs and Neyman Pearson cost minimization strategy, for final classification decision. Publicly available datasets such as KDD Cup, DARPA 1999, DARPA 2000, and CONFICKER were used for the simulation experiments. RBPBoost was trained and tested with DARPA, CONFICKER, and our own lab datasets. Detection accuracy and Cost per sample were the two metrics evaluated to analyze the performance of the RBPBoost classification algorithm. From the simulation results, it is evident that RBPBoost algorithm achieves high detection accuracy (99.4%) with fewer false alarms and outperforms the existing ensemble algorithms. RBPBoost algorithm outperforms the existing algorithms with maximum gain of 6.6% and minimum gain of 0.8%. (C) 2011 Elsevier B.V. All rights reserved.
引用
收藏
页码:1328 / 1341
页数:14
相关论文
共 50 条
  • [21] Detection of distributed denial of service attack using enhanced adaptive deep dilated ensemble with hybrid meta-heuristic approach
    Aliar, Ahamed Ali Samsu
    Gowri, V.
    Abins, A. Arockia
    TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2024, 35 (01)
  • [22] A survey of Distributed Denial of Service attack
    Mallikarjunan, K. Narasimha
    Muthupriya, K.
    Shalinie, S. Mercy
    PROCEEDINGS OF THE 10TH INTERNATIONAL CONFERENCE ON INTELLIGENT SYSTEMS AND CONTROL (ISCO'16), 2016,
  • [23] Massive distributed denial of service attack
    不详
    COMPUTERS & SECURITY, 2003, 22 (06) : 465 - 465
  • [24] Distributed Denial of Service Attack Detection in Network Traffic Using Deep Learning Algorithm
    Ramzan, Mahrukh
    Shoaib, Muhammad
    Altaf, Ayesha
    Arshad, Shazia
    Iqbal, Faiza
    Castilla, Angel Kuc
    Ashraf, Imran
    SENSORS, 2023, 23 (20)
  • [25] Detecting a Distributed Denial of Service Attack Using a Pre-processed Convolutional Neural Network
    Ghanbari, Maryam
    Kinsner, Witold
    Ferens, Ken
    2017 IEEE ELECTRICAL POWER AND ENERGY CONFERENCE (EPEC), 2017, : 624 - 629
  • [26] A detection scheme against Distributed Reflector Denial-of-Service attack
    Kim, YS
    Jeon, JC
    Jeon, JW
    Yoo, KY
    8TH WORLD MULTI-CONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL IX, PROCEEDINGS: COMPUTER SCIENCE AND ENGINEERING: I, 2004, : 44 - 48
  • [27] An optimized radial bias function neural network for intrusion detection of distributed denial of service attack in the cloud
    Varghese, Meble
    Jose, M. Victor
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2022, 34 (27):
  • [28] The Design of SDN based Detection for Distributed Denial of Service (DDoS) attack
    Oo, Myo Myint
    Kamolphiwong, Sinchai
    Kamolphiwong, Thossaporn
    2017 21ST INTERNATIONAL COMPUTER SCIENCE AND ENGINEERING CONFERENCE (ICSEC 2017), 2017, : 258 - 263
  • [29] Optimal Placement of Detection Nodes against Distributed Denial of Service Attack
    Islam, Muhammad Hasan
    Nadeem, Kamran
    Khan, Shoab A.
    INTERNATIONAL CONFERENCE ON ADVANCED COMPUTER CONTROL : ICACC 2009 - PROCEEDINGS, 2009, : 675 - 679
  • [30] Distributed Denial of Service Attack Detection and Prevention in Local Area Network
    Sinha, Somnath
    Prasad, N. Mahadev
    INNOVATIVE DATA COMMUNICATION TECHNOLOGIES AND APPLICATION, ICIDCA 2021, 2022, 96 : 415 - 428