Journal IJCRT UGC-CARE, UGCCARE( ISSN: 2320-2882 ) | UGC Approved Journal | UGC Journal | UGC CARE Journal | UGC-CARE list, New UGC-CARE Reference List, UGC CARE Journals, International Peer Reviewed Journal and Refereed Journal, ugc approved journal, UGC CARE, UGC CARE list, UGC CARE list of Journal, UGCCARE, care journal list, UGC-CARE list, New UGC-CARE Reference List, New ugc care journal list, Research Journal, Research Journal Publication, Research Paper, Low cost research journal, Free of cost paper publication in Research Journal, High impact factor journal, Journal, Research paper journal, UGC CARE journal, UGC CARE Journals, ugc care list of journal, ugc approved list, ugc approved list of journal, Follow ugc approved journal, UGC CARE Journal, ugc approved list of journal, ugc care journal, UGC CARE list, UGC-CARE, care journal, UGC-CARE list, Journal publication, ISSN approved, Research journal, research paper, research paper publication, research journal publication, high impact factor, free publication, index journal, publish paper, publish Research paper, low cost publication, ugc approved journal, UGC CARE, ugc approved list of journal, ugc care journal, UGC CARE list, UGCCARE, care journal, UGC-CARE list, New UGC-CARE Reference List, UGC CARE Journals, ugc care list of journal, ugc care list 2020, ugc care approved journal, ugc care list 2020, new ugc approved journal in 2020, ugc care list 2021, ugc approved journal in 2021, Scopus, web of Science.
How start New Journal & software Book & Thesis Publications
Submit Your Paper
Login to Author Home
Communication Guidelines

WhatsApp Contact
Click Here

  Published Paper Details:

  Paper Title

From Detection to Mitigation: A Hybrid ML-Firewall DDoS Defense with Hardware-Assisted Validation

  Authors

  Ayeshna Singh,  Prachi Sankhe,  Shlok Yadav,  Nikhil Tiwari

  Keywords

DDoS, firewall, machine learning, FPGA

  Abstract


Distributed Denial of Service (DDoS) attacks continue to pose a significant threat to service availability by overwhelming network and host resources with malicious traffic [1][7]. While machine learning based intrusion detection systems have demonstrated high classification accuracy on benchmark datasets, their direct deployment in operational environments is often limited by false positives, delayed reaction times, and the lack of explainable enforcement mechanisms [4][5]. This paper presents a hybrid DDoS detection and mitigation system that integrates machine learning based flow classification with active Linux firewall enforcement, supported by independent detection signals from an FPGA-based monitoring module. Network traffic is captured and aggregated into flows, from which engineered features are extracted and classified using a Random Forest model trained on CIC-DDoS2019 data. Instead of relying on a fixed decision threshold, confidence calibration is performed using precision recall analysis to optimize detection reliability under class imbalance [4]. To enhance robustness, ML outputs are combined with heuristic overrides based on packet volume and burst behavior, enabling rapid mitigation through dynamic iptables rule insertion. An FPGA-based SYN flood detector operates in parallel to provide deterministic, low-latency alerts that corroborate software-based detections and motivate hardware-assisted scalability [9][10]. The system further integrates Suricata as an IDS/IPS layer and Splunk for centralized logging and visualization, enabling cross-layer validation of attack events. Experimental results demonstrate consistent detection behavior across software and hardware signals, reduced false alarms, and timely mitigation, highlighting the effectiveness of hybrid, multi-layer DDoS defenses.

  IJCRT's Publication Details

  Unique Identification Number - IJCRT2512981

  Paper ID - 299600

  Page Number(s) - i577-i584

  Pubished in - Volume 13 | Issue 12 | December 2025

  DOI (Digital Object Identifier) -   

  Publisher Name - IJCRT | www.ijcrt.org | ISSN : 2320-2882

  E-ISSN Number - 2320-2882

  Cite this article

  Ayeshna Singh,  Prachi Sankhe,  Shlok Yadav,  Nikhil Tiwari,   "From Detection to Mitigation: A Hybrid ML-Firewall DDoS Defense with Hardware-Assisted Validation", International Journal of Creative Research Thoughts (IJCRT), ISSN:2320-2882, Volume.13, Issue 12, pp.i577-i584, December 2025, Available at :http://www.ijcrt.org/papers/IJCRT2512981.pdf

  Share this article

  Article Preview

  Indexing Partners

indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
Call For Paper February 2026
Indexing Partner
ISSN and 7.97 Impact Factor Details


ISSN
ISSN
ISSN: 2320-2882
Impact Factor: 7.97 and ISSN APPROVED
Journal Starting Year (ESTD) : 2013
ISSN
ISSN and 7.97 Impact Factor Details


ISSN
ISSN
ISSN: 2320-2882
Impact Factor: 7.97 and ISSN APPROVED
Journal Starting Year (ESTD) : 2013
ISSN
DOI Details

Providing A digital object identifier by DOI.org How to get DOI?
For Reviewer /Referral (RMS) Earn 500 per paper
Our Social Link
Open Access
This material is Open Knowledge
This material is Open Data
This material is Open Content
Indexing Partner

Scholarly open access journals, Peer-reviewed, and Refereed Journals, Impact factor 7.97 (Calculate by google scholar and Semantic Scholar | AI-Powered Research Tool) , Multidisciplinary, Monthly, Indexing in all major database & Metadata, Citation Generator, Digital Object Identifier(DOI)

indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer
indexer