Detection of DDoS Attacks in SDN Switches with Deep Learning and Swarm Intelligence Approach

<p>This paper introduces an efficient intrusion detection system for the Internet of Things, addressing the challenge of malware-infected IoT nodes acting as botnet attackers, along with issues in existing intrusion detection systems such as feature selection, data imbalance, and centralizatio...

Full description

Saved in:
Bibliographic Details
Main Authors: Mohsen Eghbali, Mohammadreza Mollkhalili Maybodi
Format: Article
Language:fas
Published: Islamic Azad University Bushehr Branch 2025-04-01
Series:مهندسی مخابرات جنوب
Subjects:
Online Access:https://sanad.iau.ir/journal/jce/Article/869949
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1849733106472321024
author Mohsen Eghbali
Mohammadreza Mollkhalili Maybodi
author_facet Mohsen Eghbali
Mohammadreza Mollkhalili Maybodi
author_sort Mohsen Eghbali
collection DOAJ
description <p>This paper introduces an efficient intrusion detection system for the Internet of Things, addressing the challenge of malware-infected IoT nodes acting as botnet attackers, along with issues in existing intrusion detection systems such as feature selection, data imbalance, and centralization. The proposed system leverages the distributed architecture of SDN. The method begins by balancing the dataset using the SMOTE technique. Essential features are then selected using the African Vulture Optimization Algorithm. Subsequently, an LSTM deep learning model is trained within the SDN controller. SDN switches utilize this trained model for attack detection. To enhance attack mitigation, attacking node addresses are shared among SDN switches, ensuring consistent recognition and enabling effective Distributed Denial-of-Service (DDoS) attack prevention across the network. Experimental results obtained in MATLAB, using the NSL-KDD dataset, demonstrate the proposed method&rsquo;s effectiveness, achieving an accuracy of 99.34%, a sensitivity of 99.16%, and a precision of 98.93% in attack detection. The proposed method outperforms feature selection methods based on WOA, HHO, and AO algorithms, and deep learning methods like LSTM, RNN, and CNN, particularly in detecting DDoS attacks.</p>
format Article
id doaj-art-aadaa0e2a09a43c08e2e94d5544ce9e2
institution DOAJ
issn 2980-9231
language fas
publishDate 2025-04-01
publisher Islamic Azad University Bushehr Branch
record_format Article
series مهندسی مخابرات جنوب
spelling doaj-art-aadaa0e2a09a43c08e2e94d5544ce9e22025-08-20T03:08:07ZfasIslamic Azad University Bushehr Branchمهندسی مخابرات جنوب2980-92312025-04-01145594120Detection of DDoS Attacks in SDN Switches with Deep Learning and Swarm Intelligence ApproachMohsen Eghbali0Mohammadreza Mollkhalili Maybodi1Department of Computer Engineering, Maybod Branch, Islamic Azad University, Maybod, IranDepartment of Computer Engineering, Maybod Branch, Islamic Azad University, Maybod, Iran<p>This paper introduces an efficient intrusion detection system for the Internet of Things, addressing the challenge of malware-infected IoT nodes acting as botnet attackers, along with issues in existing intrusion detection systems such as feature selection, data imbalance, and centralization. The proposed system leverages the distributed architecture of SDN. The method begins by balancing the dataset using the SMOTE technique. Essential features are then selected using the African Vulture Optimization Algorithm. Subsequently, an LSTM deep learning model is trained within the SDN controller. SDN switches utilize this trained model for attack detection. To enhance attack mitigation, attacking node addresses are shared among SDN switches, ensuring consistent recognition and enabling effective Distributed Denial-of-Service (DDoS) attack prevention across the network. Experimental results obtained in MATLAB, using the NSL-KDD dataset, demonstrate the proposed method&rsquo;s effectiveness, achieving an accuracy of 99.34%, a sensitivity of 99.16%, and a precision of 98.93% in attack detection. The proposed method outperforms feature selection methods based on WOA, HHO, and AO algorithms, and deep learning methods like LSTM, RNN, and CNN, particularly in detecting DDoS attacks.</p>https://sanad.iau.ir/journal/jce/Article/869949internet of things ddos attacks deep learning intrusion detection system sdn network
spellingShingle Mohsen Eghbali
Mohammadreza Mollkhalili Maybodi
Detection of DDoS Attacks in SDN Switches with Deep Learning and Swarm Intelligence Approach
مهندسی مخابرات جنوب
internet of things
ddos attacks
deep learning
intrusion detection system
sdn network
title Detection of DDoS Attacks in SDN Switches with Deep Learning and Swarm Intelligence Approach
title_full Detection of DDoS Attacks in SDN Switches with Deep Learning and Swarm Intelligence Approach
title_fullStr Detection of DDoS Attacks in SDN Switches with Deep Learning and Swarm Intelligence Approach
title_full_unstemmed Detection of DDoS Attacks in SDN Switches with Deep Learning and Swarm Intelligence Approach
title_short Detection of DDoS Attacks in SDN Switches with Deep Learning and Swarm Intelligence Approach
title_sort detection of ddos attacks in sdn switches with deep learning and swarm intelligence approach
topic internet of things
ddos attacks
deep learning
intrusion detection system
sdn network
url https://sanad.iau.ir/journal/jce/Article/869949
work_keys_str_mv AT mohseneghbali detectionofddosattacksinsdnswitcheswithdeeplearningandswarmintelligenceapproach
AT mohammadrezamollkhalilimaybodi detectionofddosattacksinsdnswitcheswithdeeplearningandswarmintelligenceapproach