ارائه سیستم تشخیص حملات DDoS مبتنی بر یادگیری عمیق و مکانیزم توجهㅤ

نوع مقاله : مقاله پژوهشی

نویسندگان

1 دانشجوی کارشناسی ارشد، گروه مهندسی کامپیوتردانشگاه گلستان، گرگان، ایران

2 استادیار، گروه مهندسی کامپیوتردانشگاه گلستان، گرگان، ایران

چکیده

با گسترش سریع اینترنت و افزایش تعداد دستگاه‌های متصل به شبکه، سطح حملات سایبری به‌طور چشمگیری افزایش یافته است. یکی از تهدیدات جدی در این حوزه، حملات منع سرویس توزیع‌شده (DDoS) هستند که با بهره‌گیری از تعداد زیادی سیستم آلوده، حجم عظیمی از ترافیک را به سمت اهداف مشخص هدایت می‌کنند. ویژگی توزیع‌یافته و مقیاس‌پذیر این حملات، تشخیص و مقابله با آن‌ها را به‌مراتب دشوارتر از سایر تهدیدات امنیتی کرده است. در سال‌های اخیر، مدل‌های مختلفی برای شناسایی این نوع حملات توسعه یافته‌اند، اما بسیاری از آن‌ها در تشخیص دقیق یا کاهش نرخ خطا با چالش مواجه هستند. برای مقابله با این مسئله، در این مقاله یک سیستم تشخیص نفوذ مبتنی بر شبکه‌های عصبی عمیق و مکانیزم توجه پیشنهاد شده است. روش پیشنهادی با استفاده از زبان برنامه‌نویسی Python و کتابخانه PyTorch پیاده‌سازی و بر روی مجموعه داده‌های CICIDS2017، CICIDS2018 و CICDDoS2019 آزمایش شده است. نتایج نشان داد که مدل پیشنهادی در مقایسه با روش‌های پیشین، عملکرد بهتری در شناسایی حملات DDoS ارائه می‌دهد و نرخ خطای کاذب را به‌طور قابل توجهی کاهش می‌دهد. این نتایج بیانگر پتانسیل روش پیشنهادی در بهبود امنیت شبکه و ارائه یک راهکار مؤثر در برابر تهدیدات سایبری است.

کلیدواژه‌ها

موضوعات


عنوان مقاله [English]

Deep Learning-Based DDoS Attack Detection System with Attention Mechanism

نویسندگان [English]

  • Mehran Nosrati 1
  • Fatemeh Bagheri 2
1 Master's Student, Department of Computer Engineering, Golestan University, Gorgan, Iran
2 Assistant Professor, Department of Computer Engineering, Golestan University, Gorgan, Iran.
چکیده [English]

With the rapid expansion of the internet and the increasing number of devices connected to the network, the level of cyberattacks has increased significantly. One of the serious threats in this field is Distributed Denial of Service (DDoS) attacks, which use a large number of infected systems to direct a massive volume of traffic towards specific targets. The distributed and scalable nature of these attacks makes detecting and defending against them considerably more difficult than other security threats. In recent years, various models have been developed to detect these types of attacks, but many of them face challenges in accurate detection or reducing the error rate. To address this issue, this paper proposes an intrusion detection system based on deep neural networks and an attention mechanism. The proposed method was implemented using the Python programming language and the PyTorch library and tested on the CICIDS2017, CICIDS2018, and CICDDoS2019 datasets. The results showed that the proposed model outperforms previous methods in detecting DDoS attacks and significantly reduces the false positive rate. These results indicate the potential of the proposed method in enhancing network security and providing an effective solution against cyber threats.

کلیدواژه‌ها [English]

  • Intrusion Detection System
  • Neural Network
  • Attention Mechanism
  • Distributed Denial of Service Attack
  • تاریخ دریافت: 03 دی 1404
  • تاریخ بازنگری: 16 اسفند 1404
  • تاریخ پذیرش: 24 اردیبهشت 1405
  • تاریخ انتشار: 01 خرداد 1405