Explainable AI-Based DDOS Attack Identification Method for IoT Networks

被引:20
|
作者
Kalutharage, Chathuranga Sampath [1 ]
Liu, Xiaodong [1 ]
Chrysoulas, Christos [1 ]
Pitropakis, Nikolaos [1 ]
Papadopoulos, Pavlos [1 ]
机构
[1] Edinburgh Napier Univ, Sch Comp Engn & Build Environm, Edinburgh EH10 5DT, Scotland
关键词
explainable AI; DDoS attack; IoT network; feature influence; anomaly detection; supervised learning; DEFENSE-MECHANISM; FRAMEWORK; INTERNET;
D O I
10.3390/computers12020032
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
The modern digitized world is mainly dependent on online services. The availability of online systems continues to be seriously challenged by distributed denial of service (DDoS) attacks. The challenge in mitigating attacks is not limited to identifying DDoS attacks when they happen, but also identifying the streams of attacks. However, existing attack detection methods cannot accurately and efficiently detect DDoS attacks. To this end, we propose an explainable artificial intelligence (XAI)-based novel method to identify DDoS attacks. This method detects abnormal behaviours of network traffic flows by analysing the traffic at the network layer. Moreover, it chooses the most influential features for each anomalous instance with influence weight and then sets a threshold value for each feature. Hence, this DDoS attack detection method defines security policies based on each feature threshold value for application-layer-based, volumetric-based, and transport control protocol (TCP) state-exhaustion-based features. Since the proposed method is based on layer three traffic, it can identify DDoS attacks on both Internet of Things (IoT) and traditional networks. Extensive experiments were performed on the University of Sannio, Benevento Instrution Detection System (USB-IDS) dataset, which consists of different types of DDoS attacks to test the performance of the proposed solution. The results of the comparison show that the proposed method provides greater detection accuracy and attack certainty than the state-of-the-art methods.
引用
收藏
页数:16
相关论文
共 50 条
  • [41] Correlation-Aware Neural Networks for DDoS Attack Detection in IoT Systems
    Hekmati, Arvin
    Zhang, Jiahe
    Sarkar, Tamoghna
    Jethwa, Nishant
    Grippo, Eugenio
    Krishnamachari, Bhaskar
    IEEE-ACM TRANSACTIONS ON NETWORKING, 2024, 32 (05) : 3929 - 3944
  • [42] Machine learning based low-rate DDoS attack detection for SDN enabled IoT networks
    Cheng, Haosu
    Liu, Jianwei
    Xu, Tongge
    Ren, Bohan
    Mao, Jian
    Zhang, Wei
    INTERNATIONAL JOURNAL OF SENSOR NETWORKS, 2020, 34 (01) : 56 - 69
  • [43] Machine Learning-Based Dynamic Attribute Selection Technique for DDoS Attack Classification in IoT Networks
    Ullah, Subhan
    Mahmood, Zahid
    Ali, Nabeel
    Ahmad, Tahir
    Buriro, Attaullah
    COMPUTERS, 2023, 12 (06)
  • [44] Anomaly detection framework to prevent DDoS attack in fog empowered IoT networks
    Sharma, Deepak Kumar
    Dhankhar, Tarun
    Agrawal, Gaurav
    Singh, Satish Kumar
    Gupta, Deepak
    Nebhen, Jamel
    Razzak, Imran
    AD HOC NETWORKS, 2021, 121
  • [45] RPL*: An Explainable AI-based routing protocol for Internet of Mobile Things
    Budania, Sumitra
    Shenoy, Meetha, V
    INTERNET OF THINGS, 2024, 27
  • [46] A Genetic Algorithm- and t-Test-Based System for DDoS Attack Detection in IoT Networks
    Saiyed, Makhduma F.
    Al-Anbagi, Irfan
    IEEE ACCESS, 2024, 12 : 25623 - 25641
  • [47] Towards an Explainable AI-Based Tool to Predict Preterm.irth
    Kyparissidis Kokkinidis, Ilias
    Logaras, Evangelos
    Rigas, Emmanouil S.
    Tsakiridis, Ioannis
    Dagklis, Themistoklis
    Billis, Antonis
    Bamidis, Panagiotis D.
    CARING IS SHARING-EXPLOITING THE VALUE IN DATA FOR HEALTH AND INNOVATION-PROCEEDINGS OF MIE 2023, 2023, 302 : 571 - 575
  • [48] AlphaDAPR: An AI-based Explainable Expert Support System for Art Therapy
    Kim, Jiwon
    Kang, Jiwon
    Kim, Taeeun
    Song, Hayeon
    Han, Jinyoung
    PROCEEDINGS OF 2023 28TH ANNUAL CONFERENCE ON INTELLIGENT USER INTERFACES, IUI 2023, 2023, : 19 - 31
  • [49] A Master Attack Methodology for an AI-Based Automated Attack Planner for Smart Cities
    Falco, Gregory
    Viswanathan, Arun
    Caldera, Carlos
    Shrobe, Howard
    IEEE ACCESS, 2018, 6 : 48360 - 48373
  • [50] Explainable AI-based innovative hybrid ensemble model for intrusion detection
    Ahmed, Usman
    Zheng, Jiangbin
    Almogren, Ahmad
    Khan, Sheharyar
    Sadiq, Muhammad Tariq
    Altameem, Ayman
    Rehman, Ateeq Ur
    JOURNAL OF CLOUD COMPUTING-ADVANCES SYSTEMS AND APPLICATIONS, 2024, 13 (01):