首页 | 官方网站   微博 | 高级检索  
     

一种基于BiLSTM的低速率DDoS攻击检测方法
引用本文:蒋万明,郭春,蒋朝惠.一种基于BiLSTM的低速率DDoS攻击检测方法[J].计算机与现代化,2020,0(5):120-126.
作者姓名:蒋万明  郭春  蒋朝惠
作者单位:贵州大学计算机科学与技术学院,贵州 贵阳 550025;贵州省公共大数据重点实验室,贵州 贵阳 550025;贵州大学计算机科学与技术学院,贵州 贵阳 550025;贵州省公共大数据重点实验室,贵州 贵阳 550025;贵州大学计算机科学与技术学院,贵州 贵阳 550025;贵州省公共大数据重点实验室,贵州 贵阳 550025
基金项目:河南省科技攻关计划项目;贵州省科技计划项目
摘    要:低速率分布式拒绝服务(Low-rate Distributed Denial of Service, LDDoS)攻击是一种新型的DDoS攻击方式,因其具有低速率、周期性和隐蔽性等特点,可躲避传统的DDoS攻击检测技术,更加难于检测和防御。本文提出一种基于特征选择和双向长短期记忆(Bidirectional Long Short Term Memory, BiLSTM)神经网络结合的LDDoS攻击检测方法。该方法使用分层交叉验证的递归特征消除(Recursive Feature Elimination CV, REFCV)特征选择算法挖掘双向流中最优的11个特征集合作为神经网络的输入,建立基于BiLSTM神经网络模型的LDDoS攻击检测分类器进行分类,达到LDDoS攻击检测的目的。实验结果表明该方法比卡尔曼滤波和NCAS算法有较高的检测率,误报率和漏报率都很低。

关 键 词:低速率  DDoS  BiLSTM  特征选择  
收稿时间:2020-05-21

A Low-rate DDoS Attack Detection Method Based on BiLSTM
JIANG Wan-ming,GUO Chun,JIANG Chao-hui.A Low-rate DDoS Attack Detection Method Based on BiLSTM[J].Computer and Modernization,2020,0(5):120-126.
Authors:JIANG Wan-ming  GUO Chun  JIANG Chao-hui
Abstract: Low-rate distributed denial of service (LDDoS) attack is a new type of DDoS attack. Because of its characteristics of low-rate, periodicity and concealment, it avoids the traditional detection technology of DDoS attack and is more difficult to be detected and defended. This paper proposes a LDDoS attack detection method based on feature selection and bidirectional long short term memory (BiLSTM) neural network. In this method, recursive feature elimination CV (REFCV) feature selection algorithm of layered cross validation is used to mine the optimal 11 feature sets in two-way flow as input to the neural network, and a LDDoS attack detection classifier based on BiLSTM neural network model is established for classification, which achieves the purpose of LDDoS attack detection. Experimental results show that this method has higher detection rate than Kalman filter and NCAS algorithm, and lower false positive rate and false negative rate.
Keywords:low-rate  DDoS  BiLSTM  feature selection  
本文献已被 万方数据 等数据库收录!
点击此处可从《计算机与现代化》浏览原始摘要信息
点击此处可从《计算机与现代化》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司    京ICP备09084417号-23

京公网安备 11010802026262号