Detection of different types of distributed denial of service attacks using multiple features of entropy and sequential probabilities ratio test

Distributed Denial of Service (DDoS) is the most dangerous attacks that targeted public servers. It is difficult for victims to detect these kinds of attacks because DDoS attacks can be done remotely and reflected by legal users in the network toward specific victim. The goal of this research is...

Full description

Bibliographic Details
Main Authors: Ali, Basheer Husham, Sulaiman, Nasri, Al-Haddad, S. A. R., Atan, Rodziah, Mohd Hassan, Siti Lailatul
Format: Article
Published: Taylor's University 2023
_version_ 1817927441554866176
author Ali, Basheer Husham
Sulaiman, Nasri
Al-Haddad, S. A. R.
Atan, Rodziah
Mohd Hassan, Siti Lailatul
author_facet Ali, Basheer Husham
Sulaiman, Nasri
Al-Haddad, S. A. R.
Atan, Rodziah
Mohd Hassan, Siti Lailatul
author_sort Ali, Basheer Husham
collection UPM
description Distributed Denial of Service (DDoS) is the most dangerous attacks that targeted public servers. It is difficult for victims to detect these kinds of attacks because DDoS attacks can be done remotely and reflected by legal users in the network toward specific victim. The goal of this research is to locate compromised interface and identify different types of DDoS attacks, especially up-to-date kinds of them. Multiple features of Entropy and Sequential Probabilities Ratio Test approach (E-SPRT) was proposed and implemented in order to detect different types of DDoS attacks. CICFlowMeter was used to produce bidirectional network flows and extract 82 of different features from each flow. Multiple features of E-SPRT divide incoming flows into fixed groups that have same number of flows called window size. CICDDoS2019 dataset was chosen in this research because it contains various kinds of recent attacks. The performance of all features of E-SPRT were tested by confusion matrix and compared with other higher-accuracy techniques. Finally, the implemented model with different features detects most up to date DDoS attacks and achieves an accuracy and detection rate almost over 99%.
first_indexed 2024-12-09T02:18:30Z
format Article
id upm.eprints-107252
institution Universiti Putra Malaysia
last_indexed 2024-12-09T02:18:30Z
publishDate 2023
publisher Taylor's University
record_format dspace
spelling upm.eprints-1072522024-10-17T01:56:18Z http://psasir.upm.edu.my/id/eprint/107252/ Detection of different types of distributed denial of service attacks using multiple features of entropy and sequential probabilities ratio test Ali, Basheer Husham Sulaiman, Nasri Al-Haddad, S. A. R. Atan, Rodziah Mohd Hassan, Siti Lailatul Distributed Denial of Service (DDoS) is the most dangerous attacks that targeted public servers. It is difficult for victims to detect these kinds of attacks because DDoS attacks can be done remotely and reflected by legal users in the network toward specific victim. The goal of this research is to locate compromised interface and identify different types of DDoS attacks, especially up-to-date kinds of them. Multiple features of Entropy and Sequential Probabilities Ratio Test approach (E-SPRT) was proposed and implemented in order to detect different types of DDoS attacks. CICFlowMeter was used to produce bidirectional network flows and extract 82 of different features from each flow. Multiple features of E-SPRT divide incoming flows into fixed groups that have same number of flows called window size. CICDDoS2019 dataset was chosen in this research because it contains various kinds of recent attacks. The performance of all features of E-SPRT were tested by confusion matrix and compared with other higher-accuracy techniques. Finally, the implemented model with different features detects most up to date DDoS attacks and achieves an accuracy and detection rate almost over 99%. Taylor's University 2023-04 Article PeerReviewed Ali, Basheer Husham and Sulaiman, Nasri and Al-Haddad, S. A. R. and Atan, Rodziah and Mohd Hassan, Siti Lailatul (2023) Detection of different types of distributed denial of service attacks using multiple features of entropy and sequential probabilities ratio test. Journal of Engineering Science and Technology, 18 (2). pp. 844-861. ISSN 1823-4690 https://jestec.taylors.edu.my/V18Issue2.htm
spellingShingle Ali, Basheer Husham
Sulaiman, Nasri
Al-Haddad, S. A. R.
Atan, Rodziah
Mohd Hassan, Siti Lailatul
Detection of different types of distributed denial of service attacks using multiple features of entropy and sequential probabilities ratio test
title Detection of different types of distributed denial of service attacks using multiple features of entropy and sequential probabilities ratio test
title_full Detection of different types of distributed denial of service attacks using multiple features of entropy and sequential probabilities ratio test
title_fullStr Detection of different types of distributed denial of service attacks using multiple features of entropy and sequential probabilities ratio test
title_full_unstemmed Detection of different types of distributed denial of service attacks using multiple features of entropy and sequential probabilities ratio test
title_short Detection of different types of distributed denial of service attacks using multiple features of entropy and sequential probabilities ratio test
title_sort detection of different types of distributed denial of service attacks using multiple features of entropy and sequential probabilities ratio test
work_keys_str_mv AT alibasheerhusham detectionofdifferenttypesofdistributeddenialofserviceattacksusingmultiplefeaturesofentropyandsequentialprobabilitiesratiotest
AT sulaimannasri detectionofdifferenttypesofdistributeddenialofserviceattacksusingmultiplefeaturesofentropyandsequentialprobabilitiesratiotest
AT alhaddadsar detectionofdifferenttypesofdistributeddenialofserviceattacksusingmultiplefeaturesofentropyandsequentialprobabilitiesratiotest
AT atanrodziah detectionofdifferenttypesofdistributeddenialofserviceattacksusingmultiplefeaturesofentropyandsequentialprobabilitiesratiotest
AT mohdhassansitilailatul detectionofdifferenttypesofdistributeddenialofserviceattacksusingmultiplefeaturesofentropyandsequentialprobabilitiesratiotest