Attack-Specific Feature Selection for Anomaly Detection in Software-Defined Networks

被引:36
|
作者
Abbas, Nadine [1 ]
Nasser, Youssef [1 ]
Shehab, Maryam [1 ]
Sharafeddine, Sanaa [1 ]
机构
[1] Lebanese Amer Univ, Beirut, Lebanon
关键词
Software-Defined Networks; Feature Selection; Machine Learning; Network Security; Anomaly Detection;
D O I
10.1109/MENACOMM50742.2021.9678279
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Due to the rapid advancement of technologies including the tremendous growth of multimedia content, cloud computing and mobile usage, conventional networks are not able to meet the demands. Software-Defined Networks (SDN) are considered one of the key enabling technologies providing a new powerful network architecture that allows the dynamic operation of different services using a common infrastructure. Despite their notable gains, SDNs may not be secure and are vulnerable to attacks. In this paper, we address the SDN vulnerabilities and present attack-specific feature selection to identify the features that have the most impact on anomaly detection. We first use the InSDN intrusion dataset that considers different attacks including Denial-of-Service (DoS), Distributed-DoS (DDoS), brute force, probe, web and botnet attacks. We then perform data pre-processing and apply univariate feature selection to select the features having the highest impact on the different attacks. These selected features can then be used to train the model which reduces the computational cost of modeling while keeping the high performance of the model. Detailed analysis and simulation results are then presented to show the predominant features and their impact on the different attacks.
引用
收藏
页码:142 / 146
页数:5
相关论文
共 50 条
  • [21] Anomaly-Free Policy Composition in Software-Defined Networks
    Rezvani, Mohsen
    Ignjatovic, Aleksandar
    Pagnucco, Maurice
    Jha, Sanjay
    2016 IFIP NETWORKING CONFERENCE (IFIP NETWORKING) AND WORKSHOPS, 2016, : 28 - 36
  • [22] Feature Selection and 1DCNN-based DDOS Detection in Software-Defined Networking
    Almi'ani, Noor
    Anbar, Mohammed
    Karuppayah, Shankar
    Sanjalawe, Yousef
    Alrababah, Hamza
    Abu Zwayed, Fadi
    Hasbullah, Iznan H.
    ENGINEERING LETTERS, 2024, 32 (07) : 1529 - 1544
  • [23] FloodGuard: A DoS Attack Prevention Extension in Software-Defined Networks
    Wang, Haopei
    Xu, Lei
    Gu, Guofei
    2015 45TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS, 2015, : 239 - 250
  • [24] Packet Injection Attack and Its Defense in Software-Defined Networks
    Deng, Shuhua
    Gao, Xing
    Lu, Zebin
    Gao, Xieping
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2018, 13 (03) : 695 - 705
  • [25] Packet Injection Exploiting Attack and Mitigation in Software-Defined Networks
    Li, Jishuai
    Qin, Sujuan
    Tu, Tengfei
    Zhang, Hua
    Li, Yongsheng
    APPLIED SCIENCES-BASEL, 2022, 12 (03):
  • [26] WADS: A Webshell Attack Defender Assisted by Software-Defined Networks
    Yu, Beiyuan
    Liu, JianWei
    Zhou, Ziyu
    INFORMATION SECURITY PRACTICE AND EXPERIENCE, ISPEC 2021, 2021, 13107 : 209 - 222
  • [27] Dynamic Telemetry and Deep Neural Networks for Anomaly Detection in 6G Software-Defined Networks
    Rzym, Grzegorz
    Masny, Amadeusz
    Cholda, Piotr
    ELECTRONICS, 2024, 13 (02)
  • [28] A DDoS Detection Method Based on Feature Engineering and Machine Learning in Software-Defined Networks
    Liu, Zhenpeng
    Wang, Yihang
    Feng, Fan
    Liu, Yifan
    Li, Zelin
    Shan, Yawei
    SENSORS, 2023, 23 (13)
  • [29] Improved Feature Selection and Stream Traffic Classification Based on Machine Learning in Software-Defined Networks
    Eldhai, Arwa M.
    Hamdan, Mosab
    Abdelaziz, Ahmed
    Hashem, Ibrahim Abaker Targio
    Babiker, Sharief F.
    Marsono, M. N.
    Hamzah, Muzaffar
    Jhanjhi, Noor Zaman
    IEEE ACCESS, 2024, 12 : 34141 - 34159
  • [30] Dynamic behavioral profiling for anomaly detection in software-defined IoT networks: A machine learning approach
    Senthilraja, P.
    Palaniappan, Kanmani
    Duraipandi, Brindha
    Balasubramanian, Uma Maheswari
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2024, 17 (04) : 2450 - 2469