An intelligent DDoS attack detection tree-based model using Gini index feature selection method

被引:20
|
作者
Bouke, Mohamed Aly [1 ]
Abdullah, Azizol [1 ]
ALshatebi, Sameer Hamoud [1 ]
Abdullah, Mohd Taufik [1 ]
El Atigh, Hayate [2 ]
机构
[1] Univ Putra Malaysia, Fac Comp Sci & Informat Technol, Serdang 43400, Malaysia
[2] Bandirma Onyedi Eylul Univ, Fac Comp Engn, TR-10200 Balikesir, Turkiye
关键词
Feature importance; Decision trees; Gini index; DDoS; UNSW-NB15; DEEP LEARNING APPROACH; INTERNET; THINGS; PERFORMANCE; SYSTEMS;
D O I
10.1016/j.micpro.2023.104823
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber security has recently garnered enormous attention due to the popularity of the Internet of Things (IoT), intelligent devices' rapid growth, and a vast number of real-life applications. As a result, detecting threats and constructing an efficient Intrusion detection system (IDS) have become crucial in today's security requirements. Withal, the large amount of high dimensional data might influence detection effectiveness and raise the computation requirements. Artificial Intelligence (AI) has recently attracted much attention and is widely used to build intelligent IDSs to preserve data confidentiality, integrity, and availability. Distributed denial of service (DDoS) is a denial of service (DoS) variant mainly targeting asset availability. Preventing DoS at the network or infrastructure level typically depends on implementing an IDS. This paper proposes a novel intelligent DDoS attack detection model based on a Decision Tee (DT) algorithm and an enhanced Gini index feature selection method. Our approach is evaluated on the UNSW-NB15 dataset, which contains 1,140,045 samples and is more recent and comprehensive than those used in previous works. Our system achieved an overall accuracy of 98%, outperforming baseline models that used more advanced algorithms such as Random Forest and XGBoost. Our enhanced Gini index feature selection method allowed us to select only 13 out of 45 security features, signifi-cantly reducing the data dimensionality and avoiding overfitting issues. Our model also has a lower false alarm rate, misclassifying only 2% of the testing instances. Our approach is, therefore, highly effective and efficient, with the potential to be used in real-world network security applications.
引用
收藏
页数:10
相关论文
共 50 条
  • [21] Low rate multi-vector ddos attack detection using information gain based feature selection
    Robinson R.R.R.
    Thomas C.
    Lecture Notes on Data Engineering and Communications Technologies, 2021, 66 : 685 - 696
  • [22] Detection and Analysis of Trend Topics for Global Scientific Literature using Feature Selection based on Gini-Index
    Park, Heum
    Kim, Eunsun
    Bae, Kuk-Jin
    Hahn, Hyuk
    Sung, Tae-Eung
    Kwon, Hyuk-Chul
    2011 23RD IEEE INTERNATIONAL CONFERENCE ON TOOLS WITH ARTIFICIAL INTELLIGENCE (ICTAI 2011), 2011, : 965 - 969
  • [23] Feature selection based on neighborhood rough sets and Gini index
    Zhang, Yuchao
    Nie, Bin
    Du, Jianqiang
    Chen, Jiandong
    Du, Yuwen
    Jin, Haike
    Zheng, Xuepeng
    Chen, Xingxin
    Miao, Zhen
    PEERJ, 2023, 11
  • [24] Feature selection based on neighborhood rough sets and Gini index
    Zhang, Yuchao
    Nie, Bin
    Du, Jianqiang
    Chen, Jiandong
    Du, Yuwen
    Jin, Haike
    Zheng, Xuepeng
    Chen, Xingxin
    Miao, Zhen
    PEERJ COMPUTER SCIENCE, 2023, 9
  • [25] Tree-based generational feature selection in medical applications
    Paja, Wieslaw
    KNOWLEDGE-BASED AND INTELLIGENT INFORMATION & ENGINEERING SYSTEMS (KES 2019), 2019, 159 : 2172 - 2178
  • [26] Feature selection based on neighborhood rough sets and Gini index
    Zhang Y.
    Nie B.
    Du J.
    Chen J.
    Du Y.
    Jin H.
    Zheng X.
    Chen X.
    Miao Z.
    PeerJ Computer Science, 2023, 9
  • [27] AN INTELLIGENT METHOD FOR REAL-TIME DETECTION OF DDOS ATTACK BASED ON FUZZY LOGIC
    Wang Jiangtao Yang Geng* (College of Computer
    JournalofElectronics(China), 2008, (04) : 511 - 518
  • [28] DDoS Attack Detection Using IP Address Feature Interaction
    Cheng, Jieren
    Yin, Jianping
    Liu, Yun
    Cai, Zhiping
    Wu, Chengkun
    2009 INTERNATIONAL CONFERENCE ON INTELLIGENT NETWORKING AND COLLABORATIVE SYSTEMS (INCOS 2009), 2009, : 113 - 118
  • [29] Research on the algorithm of feature selection based on Gini index for text categorization
    Shang, Wenqian
    Huang, Houkuan
    Liu, Yuling
    Lin, Yongmin
    Qu, Youli
    Dong, Hongbin
    Jisuanji Yanjiu yu Fazhan/Computer Research and Development, 2006, 43 (10): : 1688 - 1694
  • [30] Impact of a DDoS Attack on Computer Systems: An Approach Based on an Attack Tree Model
    Maciel, Ronierison
    Yz, Jean Araujo
    Dantas, Jamilson
    Melo, Carlos
    Guedes, Erico
    Maciel, Paulo
    12TH ANNUAL IEEE INTERNATIONAL SYSTEMS CONFERENCE (SYSCON2018), 2018, : 512 - 519