An intelligent DDoS attack detection tree-based model using Gini index feature selection method

被引:20
|
作者
Bouke, Mohamed Aly [1 ]
Abdullah, Azizol [1 ]
ALshatebi, Sameer Hamoud [1 ]
Abdullah, Mohd Taufik [1 ]
El Atigh, Hayate [2 ]
机构
[1] Univ Putra Malaysia, Fac Comp Sci & Informat Technol, Serdang 43400, Malaysia
[2] Bandirma Onyedi Eylul Univ, Fac Comp Engn, TR-10200 Balikesir, Turkiye
关键词
Feature importance; Decision trees; Gini index; DDoS; UNSW-NB15; DEEP LEARNING APPROACH; INTERNET; THINGS; PERFORMANCE; SYSTEMS;
D O I
10.1016/j.micpro.2023.104823
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber security has recently garnered enormous attention due to the popularity of the Internet of Things (IoT), intelligent devices' rapid growth, and a vast number of real-life applications. As a result, detecting threats and constructing an efficient Intrusion detection system (IDS) have become crucial in today's security requirements. Withal, the large amount of high dimensional data might influence detection effectiveness and raise the computation requirements. Artificial Intelligence (AI) has recently attracted much attention and is widely used to build intelligent IDSs to preserve data confidentiality, integrity, and availability. Distributed denial of service (DDoS) is a denial of service (DoS) variant mainly targeting asset availability. Preventing DoS at the network or infrastructure level typically depends on implementing an IDS. This paper proposes a novel intelligent DDoS attack detection model based on a Decision Tee (DT) algorithm and an enhanced Gini index feature selection method. Our approach is evaluated on the UNSW-NB15 dataset, which contains 1,140,045 samples and is more recent and comprehensive than those used in previous works. Our system achieved an overall accuracy of 98%, outperforming baseline models that used more advanced algorithms such as Random Forest and XGBoost. Our enhanced Gini index feature selection method allowed us to select only 13 out of 45 security features, signifi-cantly reducing the data dimensionality and avoiding overfitting issues. Our model also has a lower false alarm rate, misclassifying only 2% of the testing instances. Our approach is, therefore, highly effective and efficient, with the potential to be used in real-world network security applications.
引用
收藏
页数:10
相关论文
共 50 条
  • [1] A dynamic MLP-based DDoS attack detection method using feature selection and feedback
    Wang, Meng
    Lu, Yiqin
    Qin, Jiancheng
    COMPUTERS & SECURITY, 2020, 88 (88)
  • [2] Feature-Selection-Based DDoS Attack Detection Using AI Algorithms
    Raza, Muhammad Saibtain
    Sheikh, Mohammad Nowsin Amin
    Hwang, I-Shyan
    Ab-Rahman, Mohammad Syuhaimi
    TELECOM, 2024, 5 (02): : 333 - 346
  • [3] A feature selection-based method for DDoS attack flow classification
    Zhou, Lu
    Zhu, Ye
    Zong, Tianrui
    Xiang, Yong
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2022, 132 : 67 - 79
  • [4] A wrapper feature selection method for combined tree-based classifiers
    Gatnar, E
    FROM DATA AND INFORMATION ANALYSIS TO KNOWLEDGE ENGINEERING, 2006, : 119 - 125
  • [5] Efficient Distributed Denial of Service Attack Detection in Internet of Vehicles Using Gini Index Feature Selection and Federated Learning
    Dilshad, Muhammad
    Syed, Madiha Haider
    Rehman, Semeen
    FUTURE INTERNET, 2025, 17 (01)
  • [6] An Intelligent Tree-Based Intrusion Detection Model for Cyber Security
    Al-Omari, Mohammad
    Rawashdeh, Majdi
    Qutaishat, Fadi
    Alshira'H, Mohammad
    Ababneh, Nedal
    JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2021, 29 (02)
  • [7] An intelligent behavioral-based DDOS attack detection method using adaptive time intervals
    Shamekhi, Ali
    Shamsinejad Babaki, Pirooz
    Javidan, Reza
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2024, 17 (04) : 2185 - 2204
  • [8] An Intelligent Tree-Based Intrusion Detection Model for Cyber Security
    Mohammad Al-Omari
    Majdi Rawashdeh
    Fadi Qutaishat
    Mohammad Alshira’H
    Nedal Ababneh
    Journal of Network and Systems Management, 2021, 29
  • [9] A DDoS Attack Detection Method Based on Natural Selection of Features and Models
    Ma, Ruikui
    Chen, Xuebin
    Zhai, Ran
    ELECTRONICS, 2023, 12 (04)
  • [10] DDoS Attack Detection Method Based on Linear Prediction Model
    Cheng, Jieren
    Yin, Jianping
    Wu, Chengkun
    Zhang, Boyun
    Liu, Yun
    EMERGING INTELLIGENT COMPUTING TECHNOLOGY AND APPLICATIONS, PROCEEDINGS, 2009, 5754 : 1004 - +