• Home
  • Search
  • FMDADM: A Multi-Layer DDoS Attack Detection and Mitigation Framework Using Machine Learning for Stateful SDN-Based IoT Networks
  • Cite Icon114
  • https://doi.org/10.1109/access.2023.3260256Copy DOI Icon

FMDADM: A Multi-Layer DDoS Attack Detection and Mitigation Framework Using Machine Learning for Stateful SDN-Based IoT Networks

Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

The absence of standards and the diverse nature of the Internet of Things (IoT) have made security and privacy concerns more acute. Attacks such as distributed denial of service (DDoS) are becoming increasingly widespread in IoT, and the need for ways to stop them is growing. The use of newly formed Software-Defined Networking (SDN) significantly lowers the computational burden on IoT network nodes and makes it possible to perform more security measurements. This paper proposes an SDN-based, four-module DDoS attack detection and mitigation framework for IoT networks called FMDADM. The proposed FMDADM framework comprises four main modules and five-tier architecture. The first module implements an early detection process based on the average drop rate (ADR) principle using a 32-packet window size. The second module uses a novel double-check mapping function (DCMF), that aids in earlier attack detection at the data plane level. The third module is an ML-based detection application comprising four phases: data preprocessing, feature extraction, training and testing, and classification. This module detects DDoS attacks using only seven features: two selected and five newly computed features. The last module introduces an attack mitigation process. We applied the proposed framework to three test cases: one single-node attack test case and two multi-node attack test cases, all with real IoT traffic generated and deployed in Mininet-IoT. The proposed FMDADM framework efficiently detects DDoS attacks at high and low rates, can discriminate between attack traffic and flash crowds, and protects both local and remote IoT nodes by preventing infection from propagating to the ISP level. The FMDADM outperformed most existing cutting-edge approaches across ten different evaluation criteria. According to the experimental results, FMDADM achieved the following accuracy, precision, F-measure, recall, specificity, negative predictive value, false positive rate, false detection rate, false negative rate, and average detection time benchmarks:- 99.79%, 99.43%, 99.77%, 99.79%, 99.95%, 00.21%, 00.91%, 00.23%, and 2.64 μs, respectively.

Similar Papers
  • Research Article
  • Citations3

Deep Learning-Driven IoT Defence: Comparative Analysis of CNN and LSTM for DDoS Detection and Mitigation

  • Jan 31, 2025
  • Journal of Information Systems Engineering and Management
  • Vinay Tila Patil
  • PDF
  • Research Article
  • Citations29

Drift Adaptive Online DDoS Attack Detection Framework for IoT System

  • Mar 07, 2024
  • Electronics
  • Yonas Kibret Beshah +2
  • Research Article
  • Citations5

Deep learning techniques for DDoS attack detection: Concepts, analyses, challenges, and future directions

  • Oct 01, 2025
  • Expert Systems with Applications
  • Xingbing Fu +8
  • PDF
  • Research Article
  • Citations20

A Survey of DDOS Attack Detection Techniques for IoT Systems Using BlockChain Technology

  • Nov 24, 2022
  • Electronics
  • Zulfiqar Ali Khan +1
  • PDF
  • Research Article
  • Citations15

Using Machine Learning and Software-Defined Networking to Detect and Mitigate DDoS Attacks in Fiber-Optic Networks

  • Dec 06, 2022
  • Electronics
  • Sulaiman Alwabisi +2
  • Research Article

AI Driven Context-Aware DDoS Detection and Mitigation Framework Using Optimized CNN–BiLSTM and Reinforcement Learning

  • Jan 19, 2026
  • International Journal on Advanced Electrical and Computer Engineering
  • Mahesh S Rathod +2
  • PDF
  • Research Article
  • Citations34

Machine Learning-Based Dynamic Attribute Selection Technique for DDoS Attack Classification in IoT Networks

  • May 29, 2023
  • Computers
  • Subhan Ullah +4
  • Conference Article
  • Citations19

Mitigating and Detecting DDoS attack on IoT Environment

  • Nov 01, 2019
  • Mehboob Hasan Rohit +2
  • Conference Article
  • Citations18

An Adaptive Model for Detection and Prevention of DDoS and Flash Crowd Flooding Attacks

  • Aug 01, 2018
  • Bashar Ahmed Khalaf +3
  • PDF
  • Research Article
  • Citations12

The proposed hybrid deep learning intrusion prediction IoT (HDLIP-IoT) framework

  • Jul 29, 2022
  • PLoS ONE
  • Magdy M Fadel +4
  • PDF
  • Research Article
  • Citations45

Conditional Tabular Generative Adversarial Based Intrusion Detection System for Detecting Ddos and Dos Attacks on the Internet of Things Networks

  • Jun 16, 2023
  • Sensors
  • Basim Alabsi +2
  • PDF
  • Research Article
  • Citations14

Real-time DDoS Detection and Mitigation in Software Defined Networks using Machine Learning Techniques

  • Sep 30, 2022
  • International Journal of Computing
  • Sanjeetha R +4
  • Research Article

Efficient classifier to detect DDoS attack based on internet of things

  • Jan 01, 2024
  • Thermal Science
  • Fatimah Almulhim +4
  • Conference Article

A Lightweight Ensemble Approach for Classification of DDoS Attacks in IoE Environments

  • Jul 24, 2025
  • Kundanika Reddy Bommineni +5
  • Research Article
  • Citations82

A novel approach for accurate detection of the DDoS attacks in SDN-based SCADA systems based on deep recurrent neural networks

  • Mar 02, 2022
  • Expert Systems with Applications
  • Hüseyin Polat +3
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.