Enhancing security in Software-Defined Networks: An approach to efficient ARP spoofing attacks detection and mitigation

被引:2
|
作者
Hnamte, Vanlalruata [1 ]
Hussain, Jamal [1 ]
机构
[1] Mizoram Univ, Dept Math & Comp Sci, Aizawl 796004, Mizoram, India
来源
关键词
Software-Defined Networking; ARP spoofing; Security; Anomaly detection; Network resilience;
D O I
10.1016/j.teler.2024.100129
中图分类号
G25 [图书馆学、图书馆事业]; G35 [情报学、情报工作];
学科分类号
1205 ; 120501 ;
摘要
The proliferation of Software-Defined Networks (SDNs) has introduced unparalleled flexibility and efficiency to network management, but at the same time, it has introduced new challenges in securing network infrastructures. Among these challenges, Address Resolution Protocol (ARP) spoofing attacks remain a pervasive threat, compromising network integrity and data confidentiality. In this manuscript, we present an approach to ARP spoofing mitigation within SDNs, addressing the limitations of existing methodologies. Our proposed solution employs a multifaceted strategy that combines dynamic ARP cache management, real-time traffic analysis, and adaptive flow rule orchestration. Central to our approach is a dedicated device that continuously monitors the network topology and detects any deviations from established norms. Notably, our solution adapts seamlessly to networks of varying sizes, ensuring scalability and efficacy across diverse infrastructures. One of our key contributions is the integration of a deep learning-based Deep Neural Network (DNN) model to detect and mitigate ARP spoofing attacks. Leveraging a self-generated ARP spoofing dataset from SDN environments, our model demonstrates exceptional accuracy and adaptability, enhancing the network's capability to identify and counter such threats effectively. Our approach showcases exceptional reliability, achieving 100% accuracy rate in detection of ARP spoofing, which is crucial for sustaining network responsiveness.
引用
收藏
页数:19
相关论文
共 50 条
  • [1] Countering ARP spoofing attacks in software-defined networks using a game-theoretic approach
    Mvah, Fabrice
    Tchendji, Vianney Kengne
    Djamegni, Clementin Tayou
    Anwar, Ahmed H.
    Tosh, Deepak K.
    Kamhoua, Charles
    COMPUTERS & SECURITY, 2024, 139
  • [2] GaTeBaSep: game theory-based security protocol against ARP spoofing attacks in software-defined networks
    Mvah, Fabrice
    Tchendji, Vianney Kengne
    Djamegni, Clementin Tayou
    Anwar, Ahmed H.
    Tosh, Deepak K.
    Kamhoua, Charles
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2024, 23 (01) : 373 - 387
  • [3] GaTeBaSep: game theory-based security protocol against ARP spoofing attacks in software-defined networks
    Fabrice Mvah
    Vianney Kengne Tchendji
    Clémentin Tayou Djamegni
    Ahmed H. Anwar
    Deepak K. Tosh
    Charles Kamhoua
    International Journal of Information Security, 2024, 23 : 373 - 387
  • [4] Deception-based IDS against ARP Spoofing Attacks in Software-Defined Networks
    Mvah, Fabrice
    Tchendji, Vianney Kengne
    Djamegni, Clementin Tayou
    Anwar, Ahmed H.
    Tosh, Deepak K.
    Kamhoua, Charles
    2024 INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKING AND COMMUNICATIONS, ICNC, 2024, : 188 - 192
  • [5] Detection and Mitigation of ARP Storm Attacks using Software Defined Networks
    Numan, Munther
    Hashim, Fazirulhisyam
    Latiff, Nurul Adilah Abdul
    2017 IEEE 13TH MALAYSIA INTERNATIONAL CONFERENCE ON COMMUNICATIONS (MICC), 2017, : 181 - 186
  • [6] A Software Approach for Mitigation of DoS Attacks on SDN's (Software-Defined Networks)
    Lotlikar, Trupti
    Shah, Deven
    SOFT COMPUTING IN DATA ANALYTICS, SCDA 2018, 2019, 758 : 333 - 342
  • [7] SPHINX: Detecting Security Attacks in Software-Defined Networks
    Dhawan, Mohan
    Poddar, Rishabh
    Mahajan, Kshiteej
    Mann, Vijay
    22ND ANNUAL NETWORK AND DISTRIBUTED SYSTEM SECURITY SYMPOSIUM (NDSS 2015), 2015,
  • [8] Collaborative detection and mitigation of DDoS in software-defined networks
    Omer Elsier Tayfour
    Muhammad Nadzir Marsono
    The Journal of Supercomputing, 2021, 77 : 13166 - 13190
  • [9] Collaborative detection and mitigation of DDoS in software-defined networks
    Tayfour, Omer Elsier
    Marsono, Muhammad Nadzir
    JOURNAL OF SUPERCOMPUTING, 2021, 77 (11): : 13166 - 13190
  • [10] Detection and Mitigation of DoS Attacks in Software Defined Networks
    Gao, Shang
    Peng, Zhe
    Xiao, Bin
    Hu, Aiqun
    Song, Yubo
    Ren, Kui
    IEEE-ACM TRANSACTIONS ON NETWORKING, 2020, 28 (03) : 1419 - 1433