CADS-ML/DL: efficient cloud-based multi-attack detection system

被引:2
|
作者
Farhat, Saida [1 ]
Abdelkader, Manel [2 ]
Meddeb-Makhlouf, Amel [1 ]
Zarai, Faouzi [1 ]
机构
[1] Univ Sfax, ENET COM, NTS COM Res Unit, Sfax, Tunisia
[2] Univ Tunis, Tunis Business Sch, Tunis, Tunisia
关键词
Cloud computing; CICFlowMeter; Machine learning (ML); Deep learning (DL); Multi-attack detection system; CSE-CICIDS2018; INTRUSION DETECTION;
D O I
10.1007/s10207-023-00729-4
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the increasing adoption of cloud computing, securing cloud-based systems and applications has become a critical concern for almost every organization. Traditional security approaches such as signature-based and rule-based have limited detection capabilities toward new and sophisticated attacks. To address this issue, there has been an increasing focus on implementing Artificial Intelligence (AI) in cloud security measures. In this research article, we present CADS-ML/DL, an efficient cloud-based multi-attack detection system. We investigate the effectiveness of Machine Learning (ML) and Deep Learning (DL) techniques for detecting cloud attacks. Our approach leverages a realistic dataset consisting of both benign and fourteen common attack network flows that meet real-world criteria on the AWS cloud platform. We evaluate eight Intrusion Detection Systems (IDSs) based on ML and DL algorithms, including Decision Tree (DT), Random Forest (RF), Extreme Gradient Boosting (XGBoost), Gated Recurrent Units (GRU), Long Short-Term Memory (LSTM), Stacked LSTM, and Bidirectional LSTM (Bi-LSTM) models. Experimental results demonstrate that the CADS-ML/DL system, specifically the XGBoost model, outperforms the other models, exhibiting an accuracy of 0.9770 and a false error rate of 0.0230. Furthermore, we validate the effectiveness of our proposed XGBoost model on the AWS benchmark CSE-CICIDS2018 dataset, attaining a remarkable accuracy score of 0.9999 and an exceptionally low false error rate of 0.0001. Our findings suggest that AI-based approaches have the potential to detect cloud attacks effectively and contribute to the development of reliable and efficient IDSs for cloud security.
引用
收藏
页码:1989 / 2013
页数:25
相关论文
共 50 条
  • [1] CADS-ML/DL: efficient cloud-based multi-attack detection system
    Saida Farhat
    Manel Abdelkader
    Amel Meddeb-Makhlouf
    Faouzi Zarai
    International Journal of Information Security, 2023, 22 : 1989 - 2013
  • [2] Ensemble and Feature Selection-based Intrusion Detection System for Multi-attack Environment
    Khonde, S. R.
    Ulagamuthalvi, V
    PROCEEDINGS OF THE 2020 5TH INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION AND SECURITY (ICCCS-2020), 2020,
  • [3] A Lightweight Multi-Attack CAN Intrusion Detection System on Hybrid FPGAs
    Khandelwal, Shashwat
    Shreejith, Shanker
    2022 32ND INTERNATIONAL CONFERENCE ON FIELD-PROGRAMMABLE LOGIC AND APPLICATIONS, FPL, 2022, : 425 - 429
  • [4] Cloud-based DDoS attack detection and defence system using statistical approach
    Devi B.S.K.
    Subbulakshmi T.
    International Journal of Information and Computer Security, 2019, 11 (4-5) : 447 - 475
  • [5] Stratum Filtering: Cloud-based Detection of Attack Sources
    Herzberg, Amir
    Shulman, Haya
    Waidner, Michael
    CCSW'16: PROCEEDINGS OF THE 2016 ACM CLOUD COMPUTING SECURITY WORKSHOP, 2016, : 47 - 47
  • [6] Cloud-based Sybil Attack Detection Scheme for Connected Vehicles
    Anwar, Anika
    Halabi, Talal
    Zulkernine, Mohammad
    2019 3RD CYBER SECURITY IN NETWORKING CONFERENCE (CSNET), 2019,
  • [7] Multi-Attack Intrusion Detection System for Software-Defined Internet of Things Network
    Ferrao, Tarcizio
    Manene, Franklin
    Ajibesin, Adeyemi Abel
    CMC-COMPUTERS MATERIALS & CONTINUA, 2023, 75 (03): : 4985 - 5007
  • [8] Efficient multi-level cloud-based agriculture storage management system
    Sambrekar K.
    Rajpurohit V.S.
    International Journal of Cloud Computing, 2022, 11 (03) : 205 - 216
  • [9] A Cloud-Based Energy Efficient System for Enhancing the Detection and Prevention of Modern Malware
    Mirza, Qublai Khan Ali
    Mohi-ud-din, Ghulam
    Awan, Irfan
    IEEE 30TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS IEEE AINA 2016, 2016, : 754 - 761
  • [10] CTC: Continuous-Time Convolution based Multi-Attack Detection for Sensor Networks
    Monjur, Mohammad
    Yu, Qiaoyan
    2024 IEEE INTERNATIONAL SYMPOSIUM ON CIRCUITS AND SYSTEMS, ISCAS 2024, 2024,