A DDoS Attack Detection and Mitigation With Software-Defined Internet of Things Framework

被引:120
|
作者
Yin, Da [1 ]
Zhang, Lianming [1 ]
Yang, Kun [2 ]
机构
[1] Hunan Normal Univ, Coll Informat Sci & Engn, Changsha 410081, Hunan, Peoples R China
[2] Univ Essex, Sch Comp Sci & Elect Engn, Colchester CO4 3SQ, Essex, England
来源
IEEE ACCESS | 2018年 / 6卷
基金
中国国家自然科学基金;
关键词
Software-defined Internet of Things (SD-IoT); distributed denial of service (DDoS); attack detection; attack mitigation; cosine similarity; NETWORKING; ARCHITECTURE; EFFICIENT; SECURITY;
D O I
10.1109/ACCESS.2018.2831284
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the spread of Internet of Things' (IoT) applications, security has become extremely important. A recent distributed denial-of-service (DDoS) attack revealed the ubiquity of vulnerabilities in IoT, and many IoT devices unwittingly contributed to the DDoS attack. The emerging software-defined anything (SDx) paradigm provides a way to safely manage IoT devices. In this paper, we first present a general framework for software-defined Internet of Things (SD-IoT) based on the SDx paradigm. The proposed framework consists of a controller pool containing SD-IoT controllers, SD-IoT switches integrated with an IoT gateway, and IoT devices. We then propose an algorithm for detecting and mitigating DDoS attacks using the proposed SD-IoT framework, and in the proposed algorithm, the cosine similarity of the vectors of the packet-in message rate at boundary SD-IoT switch ports is used to determine whether DDoS attacks occur in the IoT. Finally, experimental results show that the proposed algorithm has good performance, and the proposed framework adapts to strengthen the security of the IoT with heterogeneous and vulnerable devices.
引用
下载
收藏
页码:24694 / 24705
页数:12
相关论文
共 50 条
  • [41] DDoS Attack Detection Approaches in on Software Defined Network
    Muzafar, Saira
    Jhanjhi, N. Z.
    Khan, Navid Ali
    Ashfaq, Farzeen
    2022 14TH INTERNATIONAL CONFERENCE ON MATHEMATICS, ACTUARIAL SCIENCE, COMPUTER SCIENCE AND STATISTICS (MACS), 2022,
  • [42] Research on DDoS Attack Detection in Software Defined Network
    Ma Zhao-hui
    Zhao Gan-sen
    Li Wei-wen
    Mo Ze-feng
    Wang Xin-ming
    Chen Bing-chuan
    Lin Cheng-chuang
    2018 INTERNATIONAL CONFERENCE ON CLOUD COMPUTING, BIG DATA AND BLOCKCHAIN (ICCBB 2018), 2018, : 17 - 22
  • [43] Automated DDOS attack detection in software defined networking
    Ahuja, Nisha
    Singal, Gaurav
    Mukhopadhyay, Debajyoti
    Kumar, Neeraj
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2021, 187 (187)
  • [44] Mitigation and Detection of DDoS Attacks in Software Defined Networks
    Murtuza, Shariq
    Asawa, Krishna
    2018 ELEVENTH INTERNATIONAL CONFERENCE ON CONTEMPORARY COMPUTING (IC3), 2018, : 389 - 391
  • [45] A hybrid prevention method for eavesdropping attack by link spoofing in software-defined Internet of Things controllers
    Tri-Hai Nguyen
    Yoo, Myungsik
    INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS, 2017, 13 (11):
  • [46] WAND: Wormhole Attack Analysis using the Neighbor Discovery for Software-defined Heterogeneous Internet of Things
    Alenezi, Faheed A. F.
    Song, Sejun
    Choi, Baek-Young
    2021 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS WORKSHOPS (ICC WORKSHOPS), 2021,
  • [47] Feature Engineering and Machine Learning Framework for DDoS Attack Detection in the Standardized Internet of Things
    Kamaldeep, Manisha
    Malik, Manisha
    Dutta, Maitreyee
    IEEE INTERNET OF THINGS JOURNAL, 2023, 10 (10) : 8658 - 8669
  • [48] Security Framework for Internet-of-Things-Based Software-Defined Networks Using Blockchain
    Rani, Shalli
    Babbar, Himanshi
    Srivastava, Gautam
    Gadekallu, Thippa Reddy
    Dhiman, Gaurav
    IEEE INTERNET OF THINGS JOURNAL, 2023, 10 (07) : 6074 - 6081
  • [49] Towards a machine learning-based framework for DDOS attack detection in software-defined IoT (SD-IoT) networks
    Bhayo, Jalal
    Shah, Syed Attique
    Hameed, Sufian
    Ahmed, Awais
    Nasir, Jamal
    Draheim, Dirk
    ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2023, 123
  • [50] A Deep CNN Ensemble Framework for Efficient DDoS Attack Detection in Software Defined Networks
    Haider, Shahzeb
    Akhunzada, Adnan
    Mustafa, Iqra
    Patel, Tanil Bharat
    Fernandez, Amanda
    Choo, Kim-Kwang Raymond
    Iqbal, Javed
    IEEE ACCESS, 2020, 8 : 53972 - 53983