Detecting and Mitigating DDoS Attacks with AI: A Survey

📅 2025-03-22
📈 Citations: 0
Influential: 0
📄 PDF
🤖 AI Summary
Static rule-based approaches for DDoS attack detection and mitigation suffer from poor generalization and severe class ambiguity, hindering accurate attack categorization. Method: We propose the first collaborative classification framework integrating human expert hierarchies with AI-generated dendrograms to resolve long-standing attack-type ambiguities. Our cross-layer AI paradigm spans data governance, adversarial robustness, and proactive mitigation, incorporating LSTM/GNN/Transformer architectures, unsupervised anomaly detection, adversarial training, explainable AI (XAI), and traffic feature engineering. Contribution/Results: We establish a unified evaluation benchmark quantifying trade-offs among accuracy, latency, and generalization across mainstream AI methods. We systematically analyze dataset characteristics and augmentation strategies, and identify seven open challenges—advancing toward AI-driven, closed-loop, autonomous defense systems.

Technology Category

Application Category

📝 Abstract
Distributed Denial of Service attacks represent an active cybersecurity research problem. Recent research shifted from static rule-based defenses towards AI-based detection and mitigation. This comprehensive survey covers several key topics. Preeminently, state-of-the-art AI detection methods are discussed. An in-depth taxonomy based on manual expert hierarchies and an AI-generated dendrogram are provided, thus settling DDoS categorization ambiguities. An important discussion on available datasets follows, covering data format options and their role in training AI detection methods together with adversarial training and examples augmentation. Beyond detection, AI based mitigation techniques are surveyed as well. Finally, multiple open research directions are proposed.
Problem

Research questions and friction points this paper is trying to address.

Surveying AI methods for DDoS attack detection and mitigation
Providing taxonomy to resolve DDoS categorization ambiguities
Analyzing datasets and training techniques for AI defenses
Innovation

Methods, ideas, or system contributions that make the work stand out.

AI-based DDoS detection methods
Taxonomy with expert hierarchies and AI dendrogram
AI mitigation techniques and adversarial training
🔎 Similar Papers
No similar papers found.
A
Alexandru Apostu
University of Bucharest, Bucharest, Romania
Silviu Gheorghe
Silviu Gheorghe
University of Bucharest
Machine Learning
A
Andrei Hiji
University of Bucharest, Bucharest, Romania
Nicolae Cleju
Nicolae Cleju
Technical University of Iasi
A
Andrei Puatracscu
University of Bucharest, Bucharest, Romania
C
Cristian Rusu
University of Bucharest, Bucharest, Romania
Radu Ionescu
Radu Ionescu
University of Bucharest, Bucharest, Romania
Paul Irofti
Paul Irofti
Associate Professor, University of Bucharest
anomaly detectionCyberAIsecuritydictionary learningoperating systems