跳到主要导航 跳到搜索 跳到主要内容

DDoS Attack Detection Combining Time Series-based Multi-dimensional Sketch and Machine Learning

  • Yanchao Sun
  • , Yuanfeng Han
  • , Yue Zhang*
  • , Mingsong Chen
  • , Shui Yu
  • , Yimin Xu
  • *此作品的通讯作者
  • East China Normal University
  • Beijing University of Posts and Telecommunications
  • University of Technology Sydney

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

Machine learning-based DDoS attack detection methods are mostly implemented at the packet level with expensive computational time costs, and the space cost of those sketch-based detection methods is uncertain. This paper proposes a two-stage DDoS attack detection algorithm combining time series-based multi-dimensional sketch and machine learning technologies. Besides packet numbers, total lengths, and protocols, we construct the time series-based multi-dimensional sketch with limited space cost by storing elephant flow information with the Boyer-Moore voting algorithm and hash index. For the first stage of detection, we adopt CNN to generate sketch-level DDoS attack detection results from the time series-based multi-dimensional sketch. For the sketch with potential DDoS attacks, we use RNN with flow information extracted from the sketch to implement flow-level DDoS attack detection in the second stage. Experimental results show that not only is the detection accuracy of our proposed method much close to that of packet-level DDoS attack detection methods based on machine learning, but also the computational time cost of our method is much smaller with regard to the number of machine learning operations.

源语言英语
主期刊名APNOMS 2022 - 23rd Asia-Pacific Network Operations and Management Symposium
主期刊副标题Data-Driven Intelligent Management in the Era of beyond 5G
出版商Institute of Electrical and Electronics Engineers Inc.
ISBN(电子版)9784885523397
DOI
出版状态已出版 - 2022
活动23rd Asia-Pacific Network Operations and Management Symposium, APNOMS 2022 - Takamatsu, 日本
期限: 28 9月 202230 9月 2022

出版系列

姓名APNOMS 2022 - 23rd Asia-Pacific Network Operations and Management Symposium: Data-Driven Intelligent Management in the Era of beyond 5G

会议

会议23rd Asia-Pacific Network Operations and Management Symposium, APNOMS 2022
国家/地区日本
Takamatsu
时期28/09/2230/09/22

指纹

探究 'DDoS Attack Detection Combining Time Series-based Multi-dimensional Sketch and Machine Learning' 的科研主题。它们共同构成独一无二的指纹。

引用此