Measurement Based Evaluation and Mitigation of Flood Attacks on a LAN Test-Bed

05/17/2023
by   Mohammed Nasereddin, et al.
0

The IoT's vulnerability to network attacks has motivated the design of intrusion detection schemes (IDS) using Machine Learning (ML), with a low computational cost for online detection but intensive offline learning. Such IDS can have high attack detection accuracy and are easily installed on servers that communicate with IoT devices. However, they are seldom evaluated in realistic operational conditions where IDS processing may be held up by the system overload created by attacks. Thus we first present an experimental study of UDP Flood Attacks on a Local Area Network Test-Bed, where the first line of defence is an accurate IDS using an Auto-Associative Dense Random Neural Network. The experiments reveal that during severe attacks, the packet and protocol management software overloads the multi-core server, and paralyses IDS detection. We therefore propose and experimentally evaluate an IDS design where decisions are made from a very small number of incoming packets, so that attacking traffic is dropped within milli-seconds after an attack begins and the paralysing effect of congestion is avoided.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
06/19/2023

Protecting IoT Servers Against Flood Attacks with the Quasi Deterministic Transmission Policy

IoT Servers that receive and process packets from IoT devices should mee...
research
11/09/2021

Classifying DNS Servers based on Response Message Matrix using Machine Learning

Improperly configured domain name system (DNS) servers are sometimes use...
research
12/16/2020

Detecting Botnet Attacks in IoT Environments: An Optimized Machine Learning Approach

The increased reliance on the Internet and the corresponding surge in co...
research
06/22/2023

Online Self-Supervised Learning in Machine Learning Intrusion Detection for the Internet of Things

This paper proposes a novel Self-Supervised Intrusion Detection (SSID) f...
research
10/28/2021

A Machine Learning Approach for DDoS Detection on IoT Devices

In the current world, the Internet is being used almost everywhere. With...
research
12/13/2018

A 0.16pJ/bit Recurrent Neural Network Based PUF for Enhanced Machine Learning Atack Resistance

Physically Unclonable Function (PUF) circuits are finding widespread use...
research
05/02/2021

Kubernetes Autoscaling: YoYo Attack Vulnerability and Mitigation

In recent years, we have witnessed a new kind of DDoS attack, the burst ...

Please sign up or login with your details

Forgot password? Click here to reset