Home > Published Issues > 2025 > Volume 14, No. 2, March 2025 >
IJEETC 2025 Vol.14(2): 82-87
doi: 10.18178/ijeetc.14.2.82-87

DDoS Attack Detection Using Machine Learning and Improved Clustering Algorithm

Fatima R. Hamade, Marwah Habiban, and Ali Abdulkarem Habib Alrammahi*
Department of Computer Science, Faculty of Computer Science and Mathematics, University of Kufa, Najaf, Iraq
Email: fatimar.hamade@uokufa.edu.iq (F.R.H.), marwa.habiban@uokufa.edu.iq (M.H.), alia.alramahi@uokufa.edu.iq (A.A.H.A.)
*Corresponding author

Manuscript received September 4, 2024; revised November 17, 2024; accepted December 24, 2024

Abstract—Distributed Denial of Service (DDoS) attacks have recently emerged as one of the most destructive threats to network systems. This paper aims to develop a technique that efficiently identifies DDoS attacks in networked systems by leveraging improved clustering techniques and machine learning algorithms. This methodology employs a Modified Fuzzy C-Means (MFCM) clustering algorithm to partition the available DDoS attack dataset and integrate a classification algorithm to accurately detect attacks and classify data based on specific network characteristics derived from the transformed data packets. The clustering algorithm predominantly relies on distance measurements derived from fuzzy coefficients, significantly limiting its ability to identify and classify emerging attack scenarios. The current study introduces the integration of the MFCM clustering algorithm with sophisticated classification techniques to enhance accuracy and minimize errors. The efficacy of the modified clustering algorithm was evaluated using the entropy criterion, and a value of 0.99 was attained, demonstrating superior performance relative to traditional algorithms. The training algorithm was rigorously evaluated utilizing established performance metrics, such as accuracy, detection rate, and false positive rate. The results indicate that the accuracy improved consistently across all classification algorithms applied, contributing to an enhanced attack detection rate.

 
Index Terms—ACK/PUSH-ACK, Distributed Denial of Service (DDoS) dataset, standard clustering method, modified Fuzzy C-means, training algorithms and evaluation metrics

Cite: Fatima R. Hamade, Marwah Habiban, and Ali Abdulkarem Habib Alrammahi, "DDoS Attack Detection Using Machine Learning and Improved Clustering Algorithm," International Journal of Electrical and Electronic Engineering & Telecommunications, Vol. 14, No. 2, pp. 82-87, 2025. doi: 10.18178/ijeetc.14.2.82-87

Copyright © 2025 by the authors. This is an open access article distributed under the Creative Commons Attribution License (CC BY 4.0), which permits use, distribution and reproduction in any medium, provided that the article is properly cited, the use is non-commercial and no modifications or adaptations are made.