AIセキュリティポータル K Program
A Novel Self-Attention-Enabled Weighted Ensemble-Based Convolutional Neural Network Framework for Distributed Denial of Service Attack Classification
Share
Abstract
Distributed Denial of Service (DDoS) attacks are a major concern in network security, as they overwhelm systems with excessive traffic, compromise sensitive data, and disrupt network services. Accurately detecting these attacks is crucial to protecting network infrastructure. Traditional approaches, such as single Convolutional Neural Networks (CNNs) or conventional Machine Learning (ML) algorithms like Decision Trees (DTs) and Support Vector Machines (SVMs), struggle to extract the diverse features needed for precise classification, resulting in suboptimal performance. This research addresses this gap by introducing a novel approach for DDoS attack detection. The proposed method combines three distinct CNN architectures: SA-Enabled CNN with XGBoost, SA-Enabled CNN with LSTM, and SA-Enabled CNN with Random Forest. Each model extracts features at multiple scales, while self-attention mechanisms enhance feature integration and relevance. The weighted ensemble approach ensures that both prominent and subtle features contribute to the final classification, improving adaptability to evolving attack patterns and novel threats. The proposed method achieves a precision of 98.71%, an F1-score of 98.66%, a recall of 98.63%, and an accuracy of 98.69%, outperforming traditional methods and setting a new benchmark in DDoS attack detection. This innovative approach addresses critical limitations in current models and advances the state of the art in network security.
Detecting Denial of Service attacks using machine learning algorithms
Kumari, K., Mrunalini, M.
Published: 2022
ARTP: Anomaly based real time prevention of Distributed Denial of Service attacks on the web using machine learning approach
P. Krishna Kishore, S. Ramamoorthy, V.N. Rajavarman
Published: 2023
DDoS Attack Detection: Strategies, Techniques, and Future Directions
Vinay Tila Patil, Shailesh Shivaji Deore
Published: 2024
DDoS attacks in Q3 2021
Gutnikov, A.
Published: 2021
Survey on network intrusion detection system using machine learning approaches
Sultana, N., Chilamkurti, N., Peng, W.
Published: 2019
Variables influencing the effectiveness of signature-based network intrusion detection systems
Sommestad, Teodor, Holm, Hannes, Steinvall, Daniel
Published: 2021
Signature Based Intrusion Detection for Zero-Day Attacks: (Not) A Closed Chapter?
Holm, Hannes
Published: 2014
Network anomaly detection: methods, systems and tools
M. H. Bhuyan, D. K. Bhattacharyya, J. K. Kalita
Published: 2013
Real-Time DDoS Attack Detection System Using Big Data Approach
Awan, Mazhar Javed, Umar Farooq, Hafiz Muhammad Aqeel Babar, Awais Yasin, Haitham Nobanee, Muzammil Hussain, Owais Hakeem, Azlan Mohd Zain
Published: 2021
Xgboost: A scalable tree boosting system
T. Chen, C. Guestrin
Published: 2016
Random Forests
Breiman, L.
Published: 2001
Detection of distributed denial of service attacks using automatic feature selection with enhancement for imbalance dataset
D. C. Can, H. Q. Le, Q. T. Ha
Published: 2021
Intrusion detection based on autoencoder and isolation forest in fog computing
K. Sadaf, J. Sultana
Published: 2020
Machine learning based ddos attack detection
G Ajeetha, G Madhu Priya
Published: 2019
Detection of unknown DDoS attacks with deep learning and Gaussian mixture model
C.-S. Shieh, W.-W. Lin, T.-T. Nguyen, C.-H. Chen, M.-F. Horng, D. Miu
Published: 2021
Predicting Intrusion in a Network Traffic Using Variance of Neighboring Object’s Distance
Krishna Gopal Sharma, Yashpal Singh
Published: 2023
Near real-time security system applied to sdn environments in iot networks using convolutional neural network
M. V. de Assis, L. F. Carvalho, J. J. Rodrigues, J. Lloret, M. L. Proenc¸a Jr
Published: 2020
Evaluation of classification algorithms for distributed denial of service attack detection
M. Gohil, S. Kumar
Published: 2020
Towards effective network intrusion detection: from concept to creation on azure cloud
S. Rajagopal, P. P. Kundapur, K. Hareesha
Published: 2021
A deep learning approach for network intrusion detection system
A. Javaid, Q. Niyaz, W. Sun, M. Alam
Published: 2016
Defense mechanisms against DDoS attack based on entropy in SDN-cloud using POX controller
Mishra, A., Gupta, N., Gupta, B.B.
Published: 2021
Share