Rashid Minhas, Muhammad and Shafi, Qaisar M and Buriro, Attaullah and Yaqub, Muhammad Azfar and et al (2025) F-OSFA: A Fog Level Generalizable Solution for Zero-Day DDOS Attacks Detection. IEEE Access, 13. pp. 75157-75170. DOI https://doi.org/10.1109/ACCESS.2025.3557822
Rashid Minhas, Muhammad and Shafi, Qaisar M and Buriro, Attaullah and Yaqub, Muhammad Azfar and et al (2025) F-OSFA: A Fog Level Generalizable Solution for Zero-Day DDOS Attacks Detection. IEEE Access, 13. pp. 75157-75170. DOI https://doi.org/10.1109/ACCESS.2025.3557822
Rashid Minhas, Muhammad and Shafi, Qaisar M and Buriro, Attaullah and Yaqub, Muhammad Azfar and et al (2025) F-OSFA: A Fog Level Generalizable Solution for Zero-Day DDOS Attacks Detection. IEEE Access, 13. pp. 75157-75170. DOI https://doi.org/10.1109/ACCESS.2025.3557822
Abstract
The globalization and digitization of society have caused a surge in network traffic, making reliable online services essential for user trust and system functionality. However, these services face ever increasing threats, particularly complex and well-developed Distributed Denial of Service (DDoS) attacks. Zero-day DDoS attacks, a type of DDoS attack, are especially challenging because their new and unseen nature and lack of training data render traditional Intrusion Detection and Prevention Systems (IDPS) ineffective. To tackle this, we propose the Fog-based One Solution For All (F-OSFA) system- a model with three specialized components. The first component uses a hybrid machine learning and deep learning framework that combines convolutional neural networks (CNNs) and decision trees to detect traditional DDoS attacks. The second component employs a few-shot learning module with a contractive autoencoder for zero-day attack detection. The third component is a signature-based resource usage analyzer to counter attacks mimicking normal traffic. We demonstrate the efficacy of F-OSFA on publicly available datasets and prove the scheme is generalizable and effective. F-OSFA achieves an accuracy of 99.72% on CICDDoS2019 and 99.96% on CICIDS2017. In addition, it demonstrates its efficacy in the zero-day scenario as well by achieving a 96.77% on CICDDoS2019 and 95.98% on CICIDS2017. These evaluations testify to F-OSFA as a reliable and versatile solution against ever-evolving DDoS threats.
| Item Type: | Article |
|---|---|
| Uncontrolled Keywords: | Denial-of-service attack, Computer crime, Autoencoders, Accuracy, Telecommunication traffic, Prevention and mitigation, Internet of Things, Feature extraction, Intrusion detection, Edge computing |
| Divisions: | Faculty of Science and Health > Computer Science and Electronic Engineering, School of |
| SWORD Depositor: | Unnamed user with email elements@essex.ac.uk |
| Depositing User: | Unnamed user with email elements@essex.ac.uk |
| Date Deposited: | 23 Jun 2026 13:25 |
| Last Modified: | 23 Jun 2026 13:25 |
| URI: | http://repository.essex.ac.uk/id/eprint/40823 |
Available files
Filename: F-OSFA_A_Fog_Level_Generalizable_Solution_for_Zero-Day_DDOS_Attacks_Detection.pdf
Licence: Creative Commons: Attribution 4.0