Distributed Denial of Service Attacks Detection System by Machine Learning Based on Dimensionality Reduction

Author:

Abbas Sara Abdalelah,Almhanna Mahdi S.

Abstract

Abstract Data mining algorithms have essential methods and rules that can contribute in detecting and preventing various types of network attacks. These methods are utilized with the intrusion detection systems that can be designed and developed preserve the information in organizations from damage. Specifically, the data mining technique allows users to effectively distinguish between normal and malicious traffic with good accuracy. In this paper, a methodology for revealing and detecting (DDOS) network attack was suggested using DM algorithms. The utilized methodology is divided especially into four parts, each part has its own rules, as the following: First one is the pre-processing which consists of three sub-steps: (i) encoding, (ii) log2, and (iii) PCA. Encoding is used by converting the original nominal packets into numeric features. Standardization of data was performed using logarithmic algorithm. Finally the PCA technique is applied eight times for several different features to reduce the dimensions of the dataset. The second stage is an anomaly detection model, (RF) algorithm is implemented for the extraction of data patterns while classification the types of the given features in training step, (NB) algorithm was also used in classifying the data to compare the results of its classification with the results of using the classifier (RF). In the third stage, the outcomes were tested by implementing the already trained datasets. In the fourth stage, the proposed system performance evaluation metrics were collected such as the rates of accuracy, false alarm, detection, precision, and F.measure. MIX dataset were utilized to train and test the proposed model which resulted from merging two datasets (PORTMAP+LDAP), which are used from the CICDDOS2019 datasets, each consisting of several types of attack packets, and benign packets. Several metrics were utilized in the evaluation of the proposed system. The best outcomes were obtained for detection by using the log2 algorithm and PCA technique in the preprocessing step and using (RF)classifier to classify the dataset. the accuracy when using MIX dataset was 99.9764%, the detection rate was 100%, false alarm rate ≍ 0, and the F.measure was 99.9% when PCA = 25.

Publisher

IOP Publishing

Subject

General Physics and Astronomy

Reference18 articles.

1. Developing Realistic Distributed Denial of Service (DDoS) Attack Dataset and Taxonomy;H. S,2019

2. Review clustering mechanisms of distributed denial of service attacks;Me

3. Network Intrusion Detection and its strategic importance;Talha Ali Khan

4. Detecting Distributed Denial of Service Attacks Using Data Mining Techniques;Alkasassbeh;Int. J. Adv. Comput. Sci. Appl.,2016

Cited by 7 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

1. IMPROVING THE EFFICACY OF NETWORK SECURITY BASED ON DIMENSIONALITY REDUCTION TECHNIQUES;Vinh University Journal of Science;2024-06-20

2. NetBIOS DDoS Attacks Detection With Machine Learning Classification Algorithms;2023 International Conference on Advancement in Computation & Computer Technologies (InCACCT);2023-05-05

3. Detection and Replay of Distributed Denial of Service Attacks In Smart Cities Using a Hybrid Deep Learning Approach;2023 International Conference on Business Analytics for Technology and Security (ICBATS);2023-03-07

4. A Review of Intrusion Detection Systems Using Machine Learning: Attacks, Algorithms and Challenges;Lecture Notes in Networks and Systems;2023

5. Improving the security of SDN controller using machine learning techniques;2ND INTERNATIONAL CONFERENCE ON APPLIED RESEARCH AND ENGINEERING (ICARAE2022);2023

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3