{"id":"https://openalex.org/W4324118587","doi":"https://doi.org/10.1109/iotsms58070.2022.10062034","title":"Developing Realistic Distributed Denial of Service (DDoS) Dataset for Machine Learning-based Intrusion Detection System","display_name":"Developing Realistic Distributed Denial of Service (DDoS) Dataset for Machine Learning-based Intrusion Detection System","publication_year":2022,"publication_date":"2022-11-29","ids":{"openalex":"https://openalex.org/W4324118587","doi":"https://doi.org/10.1109/iotsms58070.2022.10062034"},"language":"en","primary_location":{"id":"doi:10.1109/iotsms58070.2022.10062034","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iotsms58070.2022.10062034","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2022 9th International Conference on Internet of Things: Systems, Management and Security (IOTSMS)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5047974993","display_name":"Hassan Jalil Hadi","orcid":"https://orcid.org/0000-0001-7746-344X"},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]},{"id":"https://openalex.org/I59225215","display_name":"Bahria University","ror":"https://ror.org/02v8d7770","country_code":"PK","type":"education","lineage":["https://openalex.org/I59225215"]}],"countries":["CN","PK"],"is_corresponding":false,"raw_author_name":"Hassan Jalil Hadi","raw_affiliation_strings":["Bahria University,Dept. Cyber Reconnaissance and Combat (CRC) Lab,Islamabad,Pakistan","School of Cyber Science and Engineering, Wuhan University, Wuhan, China","Dept. Cyber Reconnaissance and Combat (CRC) Lab, Bahria University, Islamabad, Pakistan"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Bahria University,Dept. Cyber Reconnaissance and Combat (CRC) Lab,Islamabad,Pakistan","institution_ids":["https://openalex.org/I59225215"]},{"raw_affiliation_string":"School of Cyber Science and Engineering, Wuhan University, Wuhan, China","institution_ids":["https://openalex.org/I37461747"]},{"raw_affiliation_string":"Dept. Cyber Reconnaissance and Combat (CRC) Lab, Bahria University, Islamabad, Pakistan","institution_ids":["https://openalex.org/I59225215"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101962927","display_name":"Umar Hayat","orcid":"https://orcid.org/0000-0002-1677-0144"},"institutions":[{"id":"https://openalex.org/I59225215","display_name":"Bahria University","ror":"https://ror.org/02v8d7770","country_code":"PK","type":"education","lineage":["https://openalex.org/I59225215"]}],"countries":["PK"],"is_corresponding":false,"raw_author_name":"Umer Hayat","raw_affiliation_strings":["Bahria University,Dept. Cyber Reconnaissance and Combat (CRC) Lab,Islamabad,Pakistan","Dept. Cyber Reconnaissance and Combat (CRC) Lab, Bahria University, Islamabad, Pakistan"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Bahria University,Dept. Cyber Reconnaissance and Combat (CRC) Lab,Islamabad,Pakistan","institution_ids":["https://openalex.org/I59225215"]},{"raw_affiliation_string":"Dept. Cyber Reconnaissance and Combat (CRC) Lab, Bahria University, Islamabad, Pakistan","institution_ids":["https://openalex.org/I59225215"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5066071654","display_name":"Numan Musthaq","orcid":null},"institutions":[{"id":"https://openalex.org/I59225215","display_name":"Bahria University","ror":"https://ror.org/02v8d7770","country_code":"PK","type":"education","lineage":["https://openalex.org/I59225215"]}],"countries":["PK"],"is_corresponding":false,"raw_author_name":"Numan Musthaq","raw_affiliation_strings":["Bahria University,Dept. Cyber Reconnaissance and Combat (CRC) Lab,Islamabad,Pakistan","Dept. Cyber Reconnaissance and Combat (CRC) Lab, Bahria University, Islamabad, Pakistan"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Bahria University,Dept. Cyber Reconnaissance and Combat (CRC) Lab,Islamabad,Pakistan","institution_ids":["https://openalex.org/I59225215"]},{"raw_affiliation_string":"Dept. Cyber Reconnaissance and Combat (CRC) Lab, Bahria University, Islamabad, Pakistan","institution_ids":["https://openalex.org/I59225215"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5026922943","display_name":"Faisal Hussain","orcid":"https://orcid.org/0000-0001-9812-7488"},"institutions":[{"id":"https://openalex.org/I59225215","display_name":"Bahria University","ror":"https://ror.org/02v8d7770","country_code":"PK","type":"education","lineage":["https://openalex.org/I59225215"]}],"countries":["PK"],"is_corresponding":false,"raw_author_name":"Faisal Bashir Hussain","raw_affiliation_strings":["Bahria University,Dept. Cyber Reconnaissance and Combat (CRC) Lab,Islamabad,Pakistan","Dept. Cyber Reconnaissance and Combat (CRC) Lab, Bahria University, Islamabad, Pakistan"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Bahria University,Dept. Cyber Reconnaissance and Combat (CRC) Lab,Islamabad,Pakistan","institution_ids":["https://openalex.org/I59225215"]},{"raw_affiliation_string":"Dept. Cyber Reconnaissance and Combat (CRC) Lab, Bahria University, Islamabad, Pakistan","institution_ids":["https://openalex.org/I59225215"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5006794082","display_name":"Yue Cao","orcid":"https://orcid.org/0000-0002-2098-7637"},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yue Cao","raw_affiliation_strings":["Wuhan University,School of Cyber Science and Engineering,Wuhan,China","School of Cyber Science and Engineering, Wuhan University, Wuhan, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Wuhan University,School of Cyber Science and Engineering,Wuhan,China","institution_ids":["https://openalex.org/I37461747"]},{"raw_affiliation_string":"School of Cyber Science and Engineering, Wuhan University, Wuhan, China","institution_ids":["https://openalex.org/I37461747"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.9964,"has_fulltext":false,"cited_by_count":16,"citation_normalized_percentile":{"value":0.87210904,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":96,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9986000061035156,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9955999851226807,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/denial-of-service-attack","display_name":"Denial-of-service attack","score":0.8723426461219788},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8182550668716431},{"id":"https://openalex.org/keywords/intrusion-detection-system","display_name":"Intrusion detection system","score":0.6241684556007385},{"id":"https://openalex.org/keywords/reputation","display_name":"Reputation","score":0.6091829538345337},{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.5886238217353821},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5693158507347107},{"id":"https://openalex.org/keywords/application-layer-ddos-attack","display_name":"Application layer DDoS attack","score":0.48883718252182007},{"id":"https://openalex.org/keywords/trinoo","display_name":"Trinoo","score":0.4273815453052521},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.21653851866722107},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.15980315208435059}],"concepts":[{"id":"https://openalex.org/C38822068","wikidata":"https://www.wikidata.org/wiki/Q131406","display_name":"Denial-of-service attack","level":3,"score":0.8723426461219788},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8182550668716431},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.6241684556007385},{"id":"https://openalex.org/C48798503","wikidata":"https://www.wikidata.org/wiki/Q877546","display_name":"Reputation","level":2,"score":0.6091829538345337},{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.5886238217353821},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5693158507347107},{"id":"https://openalex.org/C120865594","wikidata":"https://www.wikidata.org/wiki/Q131406","display_name":"Application layer DDoS attack","level":4,"score":0.48883718252182007},{"id":"https://openalex.org/C43639116","wikidata":"https://www.wikidata.org/wiki/Q7843050","display_name":"Trinoo","level":5,"score":0.4273815453052521},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.21653851866722107},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.15980315208435059},{"id":"https://openalex.org/C36289849","wikidata":"https://www.wikidata.org/wiki/Q34749","display_name":"Social science","level":1,"score":0.0},{"id":"https://openalex.org/C144024400","wikidata":"https://www.wikidata.org/wiki/Q21201","display_name":"Sociology","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/iotsms58070.2022.10062034","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iotsms58070.2022.10062034","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2022 9th International Conference on Internet of Things: Systems, Management and Security (IOTSMS)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320337504","display_name":"Research and Development","ror":"https://ror.org/027s68j25"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":11,"referenced_works":["https://openalex.org/W2591712613","https://openalex.org/W2598265749","https://openalex.org/W2789828921","https://openalex.org/W2808687597","https://openalex.org/W2982682021","https://openalex.org/W3006138947","https://openalex.org/W4236137412","https://openalex.org/W4250024550","https://openalex.org/W4382677476","https://openalex.org/W6723168715","https://openalex.org/W6735224071"],"related_works":["https://openalex.org/W2783466926","https://openalex.org/W4286539397","https://openalex.org/W1968168724","https://openalex.org/W2204131204","https://openalex.org/W2754163055","https://openalex.org/W4256682929","https://openalex.org/W4322008378","https://openalex.org/W2383770723","https://openalex.org/W2186749541","https://openalex.org/W2360429410"],"abstract_inverted_index":{"During":[0],"the":[1,64,79,160,171,177],"last":[2],"decade,":[3],"attackers":[4],"have":[5,44,68,98],"compromised":[6],"reputable":[7],"systems":[8],"to":[9,38,47,83],"launch":[10],"massive":[11],"Distributed":[12],"Denial":[13],"of":[14,63,103,114,162,179,182],"Services":[15],"(DDoS)":[16],"attacks":[17,27,181],"against":[18],"banking":[19],"services,":[20],"corporate":[21],"websites,":[22],"and":[23,31,107,151],"e-commerce":[24],"business.":[25],"Such":[26],"cause":[28],"enormous":[29],"reputation":[30],"financial":[32],"losses":[33],"which":[34,125,157],"ruined":[35],"their":[36,187],"services":[37],"authorized":[39],"users.":[40],"Conventionally,":[41],"diverse":[42],"solutions":[43],"been":[45],"proposed":[46,108],"combat":[48],"emerging":[49],"DDoS":[50,89,115,180],"attacks.":[51,116],"However,":[52],"there":[53],"is":[54,154],"no":[55],"ideal":[56],"solution":[57],"available":[58,85,105],"to-date.":[59],"To":[60],"validate":[61],"majority":[62],"existing":[65,129],"solutions,":[66],"researchers":[67],"considered":[69],"simulation":[70],"based":[71,158],"experiments":[72],"that":[73],"become":[74],"obsolete.":[75],"Now":[76],"a":[77,100,109,120,132,145],"days,":[78],"trend":[80],"has":[81],"shifted":[82],"publicly":[84],"realistic":[86],"datasets":[87,106],"for":[88,112,176],"validation":[90],"purpose.":[91],"Thus,":[92],"in":[93,164],"this":[94,142,168],"research":[95,169],"study,":[96],"we":[97,118],"provided":[99,156,170],"comprehensive":[101],"review":[102],"currently":[104],"novel":[110,133],"taxonomy":[111],"classification":[113,150],"Further,":[117],"generated":[119,134],"new":[121,143,146],"dataset":[122,135],"called":[123],"\"CRCDDoS2022\",":[124],"can":[126,137],"overcome":[127,138],"all":[128],"shortcomings.":[130],"Moreover,":[131,140],"\"CRCDDoS2022\"":[136],"drawback.":[139],"with":[141,186],"dataset,":[144],"attack":[147],"(Malware)":[148],"family":[149],"detection":[152,178],"approach":[153],"also":[155],"on":[159],"set":[161],"features":[163],"network":[165],"flow.":[166],"Lastly,":[167],"most":[172],"significant":[173],"feature":[174],"sets":[175],"various":[183],"types":[184],"along":[185],"corresponding":[188],"weights.":[189]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":8},{"year":2023,"cited_by_count":3}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
