Distributed denial of service attack detection using an ensemble of neural classifier

被引:91
|
作者
Kumar, P. Arun Raj [1 ]
Selvakumar, S. [1 ]
机构
[1] Natl Inst Technol, Dept Comp Sci & Engn, CDBR SSE Project Lab, Tiruchirappalli 620015, Tamil Nadu, India
关键词
DDoS; Collaborative environmet; Ensemble of neural networks; Machine learning; DDOS ATTACKS; IP; MARKING;
D O I
10.1016/j.comcom.2011.01.012
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The vulnerabilities in the Communication (TCP/IP) protocol stack and the availability of more sophisticated attack tools breed in more and more network hackers to attack the network intentionally or unintentionally, leading to Distributed Denial of Service (DDoS) attack. The DDoS attacks could be detected using the existing machine learning techniques such as neural classifiers. These classifiers lack generalization capabilities which result in less performance leading to high false positives. This paper evaluates the performance of a comprehensive set of machine learning algorithms for selecting the base classifier using the publicly available KDD Cup dataset. Based on the outcome of the experiments, Resilient Back Propagation (RBP) was chosen as base classifier for our research. The improvement in performance of the RBP classifier is the focus of this paper. Our proposed classification algorithm, RBPBoost, is achieved by combining ensemble of classifier outputs and Neyman Pearson cost minimization strategy, for final classification decision. Publicly available datasets such as KDD Cup, DARPA 1999, DARPA 2000, and CONFICKER were used for the simulation experiments. RBPBoost was trained and tested with DARPA, CONFICKER, and our own lab datasets. Detection accuracy and Cost per sample were the two metrics evaluated to analyze the performance of the RBPBoost classification algorithm. From the simulation results, it is evident that RBPBoost algorithm achieves high detection accuracy (99.4%) with fewer false alarms and outperforms the existing ensemble algorithms. RBPBoost algorithm outperforms the existing algorithms with maximum gain of 6.6% and minimum gain of 0.8%. (C) 2011 Elsevier B.V. All rights reserved.
引用
收藏
页码:1328 / 1341
页数:14
相关论文
共 50 条
  • [41] An analysis and fingerprinting of a distributed denial of service attack
    Sung, MH
    Haas, M
    Xu, J
    6TH WORLD MULTICONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL VIII, PROCEEDINGS: CONCEPTS AND APPLICATIONS OF SYSTEMICS, CYBERNETICS AND INFORMATICS II, 2002, : 274 - 279
  • [42] Robust Attack Detection Approach for IIoT Using Ensemble Classifier
    Priya, V
    Thaseen, I. Sumaiya
    Gadekallu, Thippa Reddy
    Aboudaif, Mohamed K.
    Nasr, Emad Abouel
    CMC-COMPUTERS MATERIALS & CONTINUA, 2021, 66 (03): : 2457 - 2470
  • [43] Retraction Note to: Detection of distributed denial of service using deep learning neural network
    S. Sumathi
    N. Karthikeyan
    Journal of Ambient Intelligence and Humanized Computing, 2023, 14 (Suppl 1) : 287 - 287
  • [44] RETRACTED ARTICLE: Detection of distributed denial of service using deep learning neural network
    S. Sumathi
    N. Karthikeyan
    Journal of Ambient Intelligence and Humanized Computing, 2021, 12 : 5943 - 5953
  • [45] Using simulation to evaluate decisive action in Distributed Denial of Service attack
    Iwu, FO
    Zobel, RN
    SIMULATION IN INDUSTRY 2001, 2001, : 92 - 99
  • [46] Response to distributed denial-of-service attack using active technology
    Kim, HJ
    Na, JC
    Sohn, SW
    Proceedings of the Eighth IASTED International Conference on Internet and Multimedia Systems and Applications, 2004, : 244 - 248
  • [47] Mathematical Approach as Qualitative Metrics of Distributed Denial of Service Attack Detection Mechanisms
    Ghaben, Ayman
    Anbar, Mohammed
    Hasbullah, Iznan Husainy
    Karuppayah, Shankar
    IEEE ACCESS, 2021, 9 : 123012 - 123028
  • [48] Recurrent Neural Network and Convolutional Neural Network for Detection of Denial of Service Attack in Microservices
    Lee, Wonjun
    Choe, Yung Ryn
    Ghosh, Rajat Subhra
    22ND IEEE INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND APPLICATIONS, ICMLA 2023, 2023, : 1451 - 1456
  • [49] Experiments on Detection of Denial of Service Attacks using Ensemble of Classifiers
    Katkar, Vijay D.
    Kulkarni, Siddhant Vijay
    2013 INTERNATIONAL CONFERENCE ON GREEN COMPUTING, COMMUNICATION AND CONSERVATION OF ENERGY (ICGCE), 2013, : 837 - 842
  • [50] Denial of Service Attack Detection using Dendritic Cell Algorithm
    Igbe, Obinna
    Ajayi, Oluwaseyi
    Saadawi, Tarek
    2017 IEEE 8TH ANNUAL UBIQUITOUS COMPUTING, ELECTRONICS AND MOBILE COMMUNICATION CONFERENCE (UEMCON), 2017, : 294 - 299