A generalized machine learning-based model for the detection of DDoS attacks

被引:15
|
作者
Marvi, Murk [1 ]
Arfeen, Asad [1 ]
Uddin, Riaz [2 ]
机构
[1] NED Univ Engn & Technol, Dept Comp & Informat Syst Engn, Natl Ctr Cyber Secur, Karachi, Pakistan
[2] NED Univ Engn & Technol, Dept Elect Engn, Natl Ctr Robot & Automat, Karachi, Pakistan
关键词
SYSTEM;
D O I
10.1002/nem.2152
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
As time is progressing, the number and the complexity of methods adopted for launching distributed denial of service (DDoS) attacks are changing. Therefore, we propose a methodology for the development of a generalized machine learning (ML)-based model for the detection of DDoS attacks. After exploring various attributes of the dataset chosen for this study, we propose an integrated feature selection (IFS) method which consists of three stages and integration of two different methods, that is, filter and embedded methods to select features which highly contribute to the detection of various types of DDoS attacks. We use light gradient boosting machine (LGBM) algorithm for training of the model for classification of benign and malicious flows. For ensuring satisfactory performance and generalized behavior of the developed model, we test it by passing records of unseen DDoS attack types. Several performance metrics are employed for the evaluation of the model. By comparing the performance of developed model against state-of-the-art models, we state an improvement of around 20% for almost all the reported metrics. We also show that the performance of the model improves if feature space is reduced by 77%. Furthermore, the generalized behavior of the developed model is justified by demonstrating a trade-off between high variance and high bias ML models.
引用
收藏
页数:22
相关论文
共 50 条
  • [21] Battling Against DDoS in SIP Is Machine Learning-based Detection an Effective Weapon?
    Tsiatsikas, Z.
    Fakis, A.
    Papamartzivanos, D.
    Geneiatakis, D.
    Kambourakis, G.
    Kolias, C.
    [J]. 2015 12TH INTERNATIONAL JOINT CONFERENCE ON E-BUSINESS AND TELECOMMUNICATIONS (ICETE), VOL 4, 2015, : 301 - 308
  • [22] N-Tier Machine Learning-Based Architecture for DDoS Attack Detection
    Thi-Hong Vuong
    Cam-Van Nguyen Thi
    Quang-Thuy Ha
    [J]. INTELLIGENT INFORMATION AND DATABASE SYSTEMS, ACIIDS 2021, 2021, 12672 : 375 - 385
  • [23] Machine learning-based DDOS attack detection and mitigation in SDNs for IoT environments
    Kavitha, D.
    Ramalakshmi, R.
    [J]. JOURNAL OF THE FRANKLIN INSTITUTE-ENGINEERING AND APPLIED MATHEMATICS, 2024, 361 (17):
  • [24] An entropy and machine learning based approach for DDoS attacks detection in software defined networks
    Hassan, Amany I.
    Abd El Reheem, Eman
    Guirguis, Shawkat K.
    [J]. SCIENTIFIC REPORTS, 2024, 14 (01):
  • [25] Proposal of a Machine Learning-based Model to Optimize the Detection of Cyber-attacks in the Internet of Things
    Seyed, Cheikhane
    Ngo, Jeanne Roux Bilong
    Kebe, Mbaye
    [J]. INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2023, 14 (11) : 965 - 970
  • [26] A new DDoS attacks intrusion detection model based on deep learning for cybersecurity
    Akgun, Devrim
    Hizal, Selman
    Cavusoglu, Unal
    [J]. COMPUTERS & SECURITY, 2022, 118
  • [27] DDoS Attacks Detection by Using Machine Learning Methods on Online Systems
    Baskaya, Dilek
    Samet, Refi
    [J]. 2020 5TH INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND ENGINEERING (UBMK), 2020, : 52 - 57
  • [28] The DDoS attacks detection through machine learning and statistical methods in SDN
    Afsaneh Banitalebi Dehkordi
    MohammadReza Soltanaghaei
    Farsad Zamani Boroujeni
    [J]. The Journal of Supercomputing, 2021, 77 : 2383 - 2415
  • [29] The DDoS attacks detection through machine learning and statistical methods in SDN
    Dehkordi, Afsaneh Banitalebi
    Soltanaghaei, MohammadReza
    Boroujeni, Farsad Zamani
    [J]. JOURNAL OF SUPERCOMPUTING, 2021, 77 (03): : 2383 - 2415
  • [30] Distributed Denial of Service (DDoS) Attacks Detection: A Machine Learning Approach
    Samom, Premson Singh
    Taggu, Amar
    [J]. APPLIED SOFT COMPUTING AND COMMUNICATION NETWORKS, 2021, 187 : 75 - 87