UPM Institutional Repository

Detection of different types of distributed denial of service attacks using multiple features of entropy and sequential probabilities ratio test


Citation

Ali, Basheer Husham and Sulaiman, Nasri and Al-Haddad, S. A. R. and Atan, Rodziah and Mohd Hassan, Siti Lailatul (2023) Detection of different types of distributed denial of service attacks using multiple features of entropy and sequential probabilities ratio test. Journal of Engineering Science and Technology, 18 (2). pp. 844-861. ISSN 1823-4690

Abstract

Distributed Denial of Service (DDoS) is the most dangerous attacks that targeted public servers. It is difficult for victims to detect these kinds of attacks because DDoS attacks can be done remotely and reflected by legal users in the network toward specific victim. The goal of this research is to locate compromised interface and identify different types of DDoS attacks, especially up-to-date kinds of them. Multiple features of Entropy and Sequential Probabilities Ratio Test approach (E-SPRT) was proposed and implemented in order to detect different types of DDoS attacks. CICFlowMeter was used to produce bidirectional network flows and extract 82 of different features from each flow. Multiple features of E-SPRT divide incoming flows into fixed groups that have same number of flows called window size. CICDDoS2019 dataset was chosen in this research because it contains various kinds of recent attacks. The performance of all features of E-SPRT were tested by confusion matrix and compared with other higher-accuracy techniques. Finally, the implemented model with different features detects most up to date DDoS attacks and achieves an accuracy and detection rate almost over 99%.


Download File

Full text not available from this repository.
Official URL or Download Paper: https://jestec.taylors.edu.my/V18Issue2.htm

Additional Metadata

Item Type: Article
Divisions: Faculty of Computer Science and Information Technology
Faculty of Engineering
Publisher: Taylor's University
Keywords: CICDDoS2019; CICFlowMeter; Confusion matrix; DDoS attack; Entropy; Sequential probability ratio test
Depositing User: Ms. Nur Faseha Mohd Kadim
Date Deposited: 17 Oct 2024 01:56
Last Modified: 17 Oct 2024 01:56
URI: http://psasir.upm.edu.my/id/eprint/107252
Statistic Details: View Download Statistic

Actions (login required)

View Item View Item