Correlation-Aware Neural Networks for DDoS Attack Detection In IoT Systems

02/15/2023
by   Arvin Hekmati, et al.
0

We present a comprehensive study on applying machine learning to detect distributed Denial of service (DDoS) attacks using large-scale Internet of Things (IoT) systems. While prior works and existing DDoS attacks have largely focused on individual nodes transmitting packets at a high volume, we investigate more sophisticated futuristic attacks that use large numbers of IoT devices and camouflage their attack by having each node transmit at a volume typical of benign traffic. We introduce new correlation-aware architectures that take into account the correlation of traffic across IoT nodes, and we also compare the effectiveness of centralized and distributed detection models. We extensively analyze the proposed architectures by evaluating five different neural network models trained on a dataset derived from a 4060-node real-world IoT system. We observe that long short-term memory (LSTM) and a transformer-based model, in conjunction with the architectures that use correlation information of the IoT nodes, provide higher performance (in terms of F1 score and binary accuracy) than the other models and architectures, especially when the attacker camouflages itself by following benign traffic distribution on each transmitting node. For instance, by using the LSTM model, the distributed correlation-aware architecture gives 81 attacker that camouflages their attack with benign traffic as compared to 35 for the architecture that does not use correlation information. We also investigate the performance of heuristics for selecting a subset of nodes to share their data for correlation-aware architectures to meet resource constraints.

READ FULL TEXT
research
07/15/2022

NFDLM: A Lightweight Network Flow based Deep Learning Model for DDoS Attack Detection in IoT Domains

In the recent years, Distributed Denial of Service (DDoS) attacks on Int...
research
11/03/2017

Deep Learning-Based Dynamic Watermarking for Secure Signal Authentication in the Internet of Things

Securing the Internet of Things (IoT) is a necessary milestone toward ex...
research
03/23/2023

Associated Random Neural Networks for Collective Classification of Nodes in Botnet Attacks

Botnet attacks are a major threat to networked systems because of their ...
research
10/05/2021

Dataset: Large-scale Urban IoT Activity Data for DDoS Attack Emulation

As IoT deployments grow in scale for applications such as smart cities, ...
research
08/23/2021

Towards a Formal Modelling, Analysis, and Verification of a Clone Node Attack Detection Scheme in the Internet of Things

In a clone node attack, an attacker attempted to physically capture the ...
research
01/08/2020

Explosive Material Detection and Security Alert System (e-DASS)

The terrorism rate in Pakistan becomes higher even after the advancement...
research
09/29/2021

Time-Distributed Feature Learning in Network Traffic Classification for Internet of Things

The plethora of Internet of Things (IoT) devices leads to explosive netw...

Please sign up or login with your details

Forgot password? Click here to reset