• Home
  • Search
  • MiTFed: A Privacy Preserving Collaborative Network Attack Mitigation Framework Based on Federated Learning Using SDN and Blockchain
  • Cite Icon113
  • https://doi.org/10.1109/tnse.2023.3237367Copy DOI Icon

MiTFed: A Privacy Preserving Collaborative Network Attack Mitigation Framework Based on Federated Learning Using SDN and Blockchain

Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Distributed denial-of-service (DDoS) attacks continue to grow at a rapid rate plaguing Internet Service Providers (ISPs) and individuals in a stealthy way. Thus, intrusion detection systems (IDSs) must evolve to cope with these increasingly sophisticated and challenging security threats. Traditional IDSs are prone to zero-day attacks since they are usually signature-based detection systems. The recent advent of machine learning and deep learning (ML/DL) techniques can help strengthen these IDSs. However, the lack of up-to-date labeled training datasets makes these ML/DL based IDSs inefficient. The privacy nature of these datasets and widespread emergence of adversarial attacks make it difficult for major organizations to share their sensitive data. Federated Learning (FL) is gaining momentum from both academia and industry as a new sub-field of ML that aims to train a global statistical model across multiple distributed users, referred to as collaborators, without sharing their private data. Due to its privacy-preserving nature, FL has the potential to enable privacy-aware learning between a large number of collaborators. This paper presents a novel framework, called MiTFed, that allows multiple software defined networks (SDN) domains ( <inline-formula xmlns:mml="http://www.w3.org/1998/Math/MathML" xmlns:xlink="http://www.w3.org/1999/xlink"><tex-math notation="LaTeX">$i.e.,$</tex-math></inline-formula> collaborators) to collaboratively build a global intrusion detection model without sharing their sensitive datasets. In particular, MiTFed consists of: (1) a novel distributed architecture that allows multiple SDN based domains to securely collaborate in order to cope with sophisticated security threats while preserving the privacy of each SDN domain; (2) a novel Secure Multiparty Computation (SMPC) scheme to securely aggregate local model updates; and (3) a blockchain based scheme that uses Ethereum smart contracts to maintain the collaboration in a fully decentralized, trustworthy, flexible, and efficient manner. To the best of our knowledge, MiTFed is the first framework that leverages FL, blockchain and SDN technologies to mitigate the new emerging security threats in large scale. To evaluate MiTFed, we conduct several experiments using real-world network attacks; the experimental results using the well-known public network security dataset NSL-KDD show that MiTFed achieves efficiency and high accuracy in detecting the new emerging security threats in both binary and multi-class classification while preserving the privacy of collaborators, making it a promising framework to cope with the new emerging security threats in SDN.

Similar Papers
  • PDF
  • Research Article
  • Citations40

Federated Learning for Privacy-Preserving Intrusion Detection in Software-Defined Networks

  • Jan 01, 2024
  • IEEE Access
  • Mubashar Raza +3
  • Research Article

Attack-aware Security Function Management

  • May 03, 2021
  • Online Publication Service of Würzburg University (Würzburg University)
  • Lukas Iffländer
  • Conference Article
  • Citations11

AsIDPS: Auto-Scaling Intrusion Detection and Prevention System for Cloud

  • Jun 01, 2018
  • Junchi Xing +6
  • Book Chapter

Federated Learning for Enhanced Intrusion Detection: Combating Digital Deception in IoTEnabled Social Networks

  • Sep 21, 2025
  • Soni Soni +2
  • Conference Article

A Hybrid Machine Learning and Heuristic-Based Framework for Real-Time DDoS Detection in IoT and 5G Networks

  • Jan 22, 2026
  • Aarti Amod Agarkar +4
  • Conference Article
  • Citations10

Early Detection of Intrusion in SDN

  • May 08, 2023
  • Md Shamim Towhid +1
  • Research Article
  • Citations2

Improvement in DDoS attack detection in software defined network using ML algorithm

  • Jan 01, 2023
  • Journal of Discrete Mathematical Sciences &amp; Cryptography
  • Saumitra Chattopadhyay +2
  • Research Article
  • Citations69

A DDoS attack detection and defense scheme using time-series analysis for SDN

  • Aug 21, 2020
  • Journal of Information Security and Applications
  • Ramin Fadaei Fouladi +2
  • Research Article
  • Citations1

A NOVEL APPROACH FOR ADDRESSING IOT NETWORKS VULNERABILITIES IN DETECTION AND CLASSIFICATION OF DOS/DDOS ATTACKS

  • Oct 02, 2024
  • International Journal of Software Engineering and Computer Systems
  • Aisha Ibrahim Gide +1
  • Research Article
  • Citations1

Separating Monitoring from Control in SDN to Mitigate DDoS Attacks in Hybrid Clouds

  • Nov 02, 2020
  • International Journal of Sensors, Wireless Communications and Control
  • Tarek S Sobh
  • Book Chapter

Scalable and Collaborative Intrusion Detection and Prevention Systems Based on SDN and NFV

  • Jan 01, 2020
  • Agathe Blaise +2
  • Conference Article
  • Citations4

Research on DDoS Attack Detection in Software Defined Network

  • Nov 01, 2018
  • Ma Zhao-Hui +6
  • Research Article
  • Citations6

Advancing DDoS attack detection with hybrid deep learning: integrating convolutional neural networks, PCA, and vision transformers

  • Apr 01, 2024
  • International Journal on Smart Sensing and Intelligent Systems
  • Jahangir Shaikh +5
  • Conference Article
  • Citations4

A Novel Approach for the Detection of DDoS Attacks in SDN using Information Theory Metric

  • Mar 17, 2021
  • Jagdeep Singh +1
  • Research Article
  • Citations28

Distributed Denial of Services (DDoS) attack detection in SDN using Optimizer-equipped CNN-MLP.

  • Jan 27, 2025
  • PloS one
  • Sajid Mehmood +5
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.