基于神经网络的DDoS攻击检测

Chang-Jung Hsieh, Ting-Yuan Chan
{"title":"基于神经网络的DDoS攻击检测","authors":"Chang-Jung Hsieh, Ting-Yuan Chan","doi":"10.1109/ICASI.2016.7539833","DOIUrl":null,"url":null,"abstract":"Network security issues are becoming serious with the growth of Internet, in many types of network attacks, The Distributed Denial of Service (DDoS) has become the vital threat, The Akamai report reveals first quarter of 2015 there are more than doubled attacks in the same quarter last year, In addition, the types of DDoS attacks changing frequency, in the past, attackers used huge volumes of traffic in short time to make victim host unavailable, but now some attackers used low volumes of traffic for a long time making attacks difficult to detect. Nowadays, there already have many methods for the DDoS detection, but no one can fully detect, the difficulty lies in DDoS attacks often have huge volumes of traffic, in first quarter of 2015, there were 8 attacks exceeding 100 Gbps, and their characteristic highly variable, make hard to detect, in order to overcome it, this paper propose DDoS detection method based on Neural Networks, implemented in the Apache Spark cluster, we used 2000 DARPA LLDOS 1.0 dataset to train and perform experiments to our detection system in a real network environment, the results show our detection system able to detect attacks in real time and average detection rates were over 94%.","PeriodicalId":170124,"journal":{"name":"2016 International Conference on Applied System Innovation (ICASI)","volume":"2013 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2016-05-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"51","resultStr":"{\"title\":\"Detection DDoS attacks based on neural-network using Apache Spark\",\"authors\":\"Chang-Jung Hsieh, Ting-Yuan Chan\",\"doi\":\"10.1109/ICASI.2016.7539833\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Network security issues are becoming serious with the growth of Internet, in many types of network attacks, The Distributed Denial of Service (DDoS) has become the vital threat, The Akamai report reveals first quarter of 2015 there are more than doubled attacks in the same quarter last year, In addition, the types of DDoS attacks changing frequency, in the past, attackers used huge volumes of traffic in short time to make victim host unavailable, but now some attackers used low volumes of traffic for a long time making attacks difficult to detect. Nowadays, there already have many methods for the DDoS detection, but no one can fully detect, the difficulty lies in DDoS attacks often have huge volumes of traffic, in first quarter of 2015, there were 8 attacks exceeding 100 Gbps, and their characteristic highly variable, make hard to detect, in order to overcome it, this paper propose DDoS detection method based on Neural Networks, implemented in the Apache Spark cluster, we used 2000 DARPA LLDOS 1.0 dataset to train and perform experiments to our detection system in a real network environment, the results show our detection system able to detect attacks in real time and average detection rates were over 94%.\",\"PeriodicalId\":170124,\"journal\":{\"name\":\"2016 International Conference on Applied System Innovation (ICASI)\",\"volume\":\"2013 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2016-05-26\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"51\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2016 International Conference on Applied System Innovation (ICASI)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICASI.2016.7539833\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2016 International Conference on Applied System Innovation (ICASI)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICASI.2016.7539833","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 51

摘要

随着互联网的发展,网络安全问题变得越来越严重,在许多类型的网络攻击中,分布式拒绝服务(DDoS)已经成为至关重要的威胁,Akamai报告显示,2015年第一季度的攻击次数是去年同期的两倍多,此外,DDoS攻击的类型频率也在变化,在过去,攻击者在短时间内使用大量的流量使受害者主机不可用。但现在一些攻击者长期使用低流量,使得攻击难以被检测到。目前,针对DDoS的检测方法已经有很多,但没有一种方法能够完全检测到,难点在于DDoS攻击往往具有巨大的流量,2015年第一季度,有8次攻击超过100 Gbps,且其特征高度可变,使得检测难度较大,为了克服这一点,本文提出了基于神经网络的DDoS检测方法,实现在Apache Spark集群上。利用2000年DARPA LLDOS 1.0数据集,在真实网络环境下对检测系统进行了训练和实验,结果表明,检测系统能够实时检测攻击,平均检测率超过94%。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Detection DDoS attacks based on neural-network using Apache Spark
Network security issues are becoming serious with the growth of Internet, in many types of network attacks, The Distributed Denial of Service (DDoS) has become the vital threat, The Akamai report reveals first quarter of 2015 there are more than doubled attacks in the same quarter last year, In addition, the types of DDoS attacks changing frequency, in the past, attackers used huge volumes of traffic in short time to make victim host unavailable, but now some attackers used low volumes of traffic for a long time making attacks difficult to detect. Nowadays, there already have many methods for the DDoS detection, but no one can fully detect, the difficulty lies in DDoS attacks often have huge volumes of traffic, in first quarter of 2015, there were 8 attacks exceeding 100 Gbps, and their characteristic highly variable, make hard to detect, in order to overcome it, this paper propose DDoS detection method based on Neural Networks, implemented in the Apache Spark cluster, we used 2000 DARPA LLDOS 1.0 dataset to train and perform experiments to our detection system in a real network environment, the results show our detection system able to detect attacks in real time and average detection rates were over 94%.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信