@inproceedings{25d0ce7d68464a2b91d6175bc20e268d,
title = "DNS flooding attack detection scheme through Machine Learning",
abstract = "Domain Name System (DNS) servers are considered registers that enable internet devices to quickly look up specific web servers and access web pages. DNS flooding is a type of distributed denial of service (DDoS) attack in which an attacker overwhelms DNS servers with a huge number of resolution requests. Such an attack can prevent DNS servers from responding to legitimate traffic. In this paper, we propose a new approach that relies on monitoring and analyzing incoming DNS requests to identify flooding attacks against DNS servers. The detection is carried out using a Machine Learning-based Intrusion Detection System at the entry point of networks. We analyze the performance of different machine learning methods (decision tree, random forest, XGBoost, SVM, K-nearest neighbors, logistic regression, and Multi-Layer Perceptron) for detecting DNS flooding attacks. The evaluation was conducted in the context of emulated attacks. The obtained results reveal that all six methods exhibit the capability to effectively detect DNS attacks, even when dealing with low attack rates. This highlights the robustness of these methods and their potential to maintain high accuracy levels in identifying DNS attack patterns.",
keywords = "Cybersecurity, DDoS attack, Deep Learning, Machine Learning",
author = "\{El Attar\}, Ali and Rida Khatoun and Fadlallah Chbib and Ahmad Fadlallah and Ahmed Serhrouchni",
note = "Publisher Copyright: {\textcopyright} 2024 IEEE.; 20th IEEE International Wireless Communications and Mobile Computing Conference, IWCMC 2024 ; Conference date: 27-05-2024 Through 31-05-2024",
year = "2024",
month = jan,
day = "1",
doi = "10.1109/IWCMC61514.2024.10592588",
language = "English",
series = "20th International Wireless Communications and Mobile Computing Conference, IWCMC 2024",
publisher = "Institute of Electrical and Electronics Engineers Inc.",
pages = "132--137",
booktitle = "20th International Wireless Communications and Mobile Computing Conference, IWCMC 2024",
}