Efficient and Intelligent Attack Detection in Software Defined IoT Networks

被引:14
|
作者
Zhang, Yuntong [1 ]
Xu, Jingye [2 ]
Wang, Zhiwei [2 ]
Geng, Rong [1 ]
Choo, Kim-Kwang Raymond [1 ,2 ,3 ]
Arturo Perez-Diaz, Jesus [4 ]
Zhu, Dakai [1 ]
机构
[1] Univ Texas San Antonio, Dept Comp Sci, San Antonio, TX 78249 USA
[2] Univ Texas San Antonio, Dept Elect & Comp Engn, San Antonio, TX USA
[3] Univ Texas San Antonio, Dept Informat Syst & Cyber Secur, San Antonio, TX USA
[4] Tecnol Monterrey, Escuela Ingn & Ciencias, Monterrey, NL, Mexico
关键词
INTRUSION DETECTION; INTERNET; SECURE; THINGS;
D O I
10.1109/icess49830.2020.9301591
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the increasing deployment of Internet of Things (IoT) in various domains (e.g., smart buildings and critical infrastructure protection), the limited capabilities on such devices introduce significant security vulnerabilities, especially when considering their integration with Software Defined Network (SDN) to provide flexible services. In this paper, we investigate efficient attack detection techniques for such software-defined IoT (SD-IoT) networks. First, we simulate commonly utilized attacks, such as SYN, ping flood, UDP port scan and UDP flood, using Mininet-WiFi for a given SD-IoT topology and collect representative datasets with Wireshark. Then, focusing on Random Forest (RF) machine learning models, we study the effects of various feature sets (e.g., IPs and ports) on the detection accuracy for different attacks. Moreover, the effects of RF configurations (i.e., forest size and tree depth) on the detection accuracy and run-time overheads are also evaluated. In addition to our collected datasets, two known IoT datasets were also used. The results show that RF can achieve high detection accuracy with the selected feature sets for the considered attacks. Moreover, the detection accuracy of RF decreases only slightly with reduced forest sizes (e.g., fewer trees or less depth) where the run-time overheads can be significantly reduced. This demonstrates the utility of the studied techniques in resource-constrained IoT networks.
引用
收藏
页数:9
相关论文
共 50 条
  • [41] DDoS Attack Detection Method Based on Improved KNN With the Degree of DDoS Attack in Software-Defined Networks
    Dong, Shi
    Sarem, Mudar
    [J]. IEEE ACCESS, 2020, 8 : 5039 - 5048
  • [42] SD-IIDS: intelligent intrusion detection system for software-defined networks
    Neena Susan Shaji
    Raja Muthalagu
    Pranav Mothabhau Pawar
    [J]. Multimedia Tools and Applications, 2024, 83 : 11077 - 11109
  • [43] SD-IIDS: intelligent intrusion detection system for software-defined networks
    Shaji, Neena Susan
    Muthalagu, Raja
    Pawar, Pranav Mothabhau
    [J]. MULTIMEDIA TOOLS AND APPLICATIONS, 2024, 83 (04) : 11077 - 11109
  • [44] DDoS Attack Detection Approaches in on Software Defined Network
    Muzafar, Saira
    Jhanjhi, N. Z.
    Khan, Navid Ali
    Ashfaq, Farzeen
    [J]. 2022 14TH INTERNATIONAL CONFERENCE ON MATHEMATICS, ACTUARIAL SCIENCE, COMPUTER SCIENCE AND STATISTICS (MACS), 2022,
  • [45] Research on DDoS Attack Detection in Software Defined Network
    Ma Zhao-hui
    Zhao Gan-sen
    Li Wei-wen
    Mo Ze-feng
    Wang Xin-ming
    Chen Bing-chuan
    Lin Cheng-chuang
    [J]. 2018 INTERNATIONAL CONFERENCE ON CLOUD COMPUTING, BIG DATA AND BLOCKCHAIN (ICCBB 2018), 2018, : 17 - 22
  • [46] Automated DDOS attack detection in software defined networking
    Ahuja, Nisha
    Singal, Gaurav
    Mukhopadhyay, Debajyoti
    Kumar, Neeraj
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2021, 187
  • [47] Botnet Attack Detection Approach in IoT Networks
    Tatarnikova, T. M.
    Sikarev, I. A.
    Bogdanov, P. Yu.
    Timochkina, T. V.
    [J]. AUTOMATIC CONTROL AND COMPUTER SCIENCES, 2022, 56 (08) : 838 - 846
  • [48] Botnet Attack Detection Approach in IoT Networks
    T. M. Tatarnikova
    I. A. Sikarev
    P. Yu. Bogdanov
    T. V. Timochkina
    [J]. Automatic Control and Computer Sciences, 2022, 56 : 838 - 846
  • [49] A SEL for attack detection in IoT/IIoT networks
    Abdulkareem, Sulyman Age
    Foh, Chuan Heng
    Carrez, Francois
    Moessner, Klaus
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2024, 230
  • [50] An Intelligent Congestion Control Method in Software Defined Networks
    Zhao, Jihong
    Tong, Mengfei
    Qu, Hua
    Zhao, Jianlong
    [J]. 2019 IEEE 11TH INTERNATIONAL CONFERENCE ON COMMUNICATION SOFTWARE AND NETWORKS (ICCSN 2019), 2019, : 51 - 56