Published at : 31 Jul 2026
Volume : IJtech
Vol 17, No 4 (2026)
DOI : https://doi.org/10.14716/ijtech.v17i4.8467
| Mohammed Altaf Ahmed | Department of Computer Engineering, College of Computer Engineering & Sciences, Prince Sattam bin Abdulaziz University, Al-Kharj 11942, Saudi Arabia |
| Sultan Alqahtani | Department of Computer Engineering, College of Computer Engineering & Sciences, Prince Sattam bin Abdulaziz University, Al-Kharj 11942, Saudi Arabia |
Due to the fast proliferation of networked systems, distributed denial of service (DDoS) attacks have become increasingly common and more complex, and they are a major menace to network availability and reliability. Conventional intrusion detection systems (IDS) are prone to high-dimensional traffic data redundancy and a limited ability to learn higher-level temporal associations, thereby leading to lower detection and higher false alarm rates. To overcome these drawbacks, an intelligent intrusion detection system that combines ant colony optimization (ACO)-based feature selection and a hybrid convolutional neural network and bidirectional long short-term memory (CNN-BiLSTM) framework is proposed. Network traffic data are gathered using the CICIDS2017 dataset. An overall data preprocessing pipeline is used, which consists of missing value elimination, duplicate removal, binary label encoding, and min–max normalization to ensure data quality and stability. Flow-based statistical analysis and time-window traffic aggregation are performed to engineer discriminative traffic characteristics. ACO is used to create an ideal feature subset by maximizing the detection rate and minimizing feature redundancy. These features are then input to the CNN-BiLSTM model, whose CNN layers learn local spatial features and BiLSTM layers learn long-range temporal features. The proposed model has an accuracy of 98.65%, a precision of 97.37%, a recall of 95.00%, and an F1-score of 98.65%, which is better than current deep learning-based IDS approaches. This work provides an efficient, scalable, and high-performance IDS structure for real-world network security applications.
Ant colony optimization; CNN–BiLSTM; Cybersecurity; DoS Attack; Intrusion detection system
| Filename | Description |
|---|---|
| R1-EECE-8467-20260524185933.docx | This is a reviewer responses file. |
Ahmed, M., &
Alnatheer, S. (2025). Intrusion detection in a digital twin-enabled secure
industrial Internet of Things environment for industrial sustainability. Engineering,
Technology & Applied Science Research, 15(3), 21263–21269. https://doi.org/10.48084/etasr.10128
Ali, A.,
Charfeddine, M., Hamed, B., Albalwy, F., Alqarafi, A., & Hussain, A.
(2024). Unveiling machine learning strategies and considerations in intrusion
detection systems: A comprehensive survey. Frontiers in Computer Science, 6.
https://doi.org/10.3389/fcomp.2024.1387354
Aljabri, W., Abdul
Hamid, M., & Mosli, R. (2025). Enhancing real-time intrusion detection
system for in-vehicle networks by employing novel feature engineering
techniques and lightweight modeling. Ad Hoc Networks, 169, 103737. https://doi.org/10.1016/j.adhoc.2024.103737
Al-Na’amneh, Q.,
Aljaidi, M., Nasayreh, A., Gharaibeh, H., Al Mamlook, R. E., Jaradat, A. S.,
Alsarhan, A., & Samara, G. (2024). Enhancing IoT device security: CNN-SVM
hybrid approach for real-time detection of DoS and DDoS attacks. Journal of
Intelligent Systems, 33(1). https://doi.org/10.1515/jisys-2023-0150
Alotaibi, A.,
& Rassam, M. (2023). Enhancing the sustainability of deep-learning-based
network intrusion detection classifiers against adversarial attacks. Sustainability,
15(12), 9801. https://doi.org/10.3390/su15129801
Ataa, M., Sanad,
E., & El-Khoribi, R. (2024). Intrusion detection in software defined
network using deep learning approaches. Scientific Reports, 14(1),
29159. https://doi.org/10.1038/s41598-024-79001-1
Bakro, M., Kumar,
R. R., Alabrah, A., Author4, A., Author5, A., Author6, A., & Abdelsalam, A.
(2023). An improved design for a cloud intrusion detection system using hybrid
features selection approach with ML classifier. IEEE Access, 11,
64228–64247. https://doi.org/10.1109/ACCESS.2023.3289405
Biswas, S.,
Goswami, R. S., Reddy, K. H. K., Mohanty, S. N., & Ahmed, M. A. (2024).
Advancing quantum communication security: Metamaterial based quantum key
distribution with enhanced protocols. IET Quantum Communication, 5(4),
399–416. https://doi.org/10.1049/qtc2.12116
Esmaeili, M.,
Goki, S., Masjidi, B., Sameh, M., Gharagozlou, H., & Mohammed, A. (2022).
ML-DDoSNet: IoT intrusion detection based on denial-of-service attacks using
machine learning methods and NSL-KDD. Wireless Communications and Mobile
Computing, 2022(1), 8481452. https://doi.org/10.1155/2022/8481452
Espinoza-Zelaya,
C., & Moon, Y. (2022). Resilience enhancing mechanisms for
cyber-manufacturing systems against cyber-attacks. IFAC-PapersOnLine, 55,
2252–2257. https://doi.org/10.1016/j.ifacol.2022.10.043
Gong, X., Yang,
Y., Zhang, Y., Li, N., Guan, Y., & Jiang, R. (2025). Feature selection
method for network intrusion based on hybrid meta-heuristic dynamic
optimization algorithm. Computers & Security, 156, 104512. https://doi.org/10.1016/j.cose.2025.104512
Hewapathirana, I.
(2025). A comparative study of two-stage intrusion detection using modern
machine learning approaches on the CSE-CIC-IDS2018 dataset. Knowledge, 5(1),
6. https://doi.org/10.3390/knowledge5010006
Hozouri, A.,
Mirzaei, A., & Effatparvar, M. (2025). A comprehensive survey on intrusion
detection systems with advances in machine learning, deep learning and emerging
cybersecurity challenges. Discover Artificial Intelligence, 5(1), 314. https://doi.org/10.1007/s44163-025-00578-1
Hu, J., Liu, Y.,
Lam, K.-M., & Lou, P. (2023). STFE-Net: A spatial-temporal feature
extraction network for continuous sign language translation. IEEE Access, 11,
46204–46217. https://doi.org/10.1109/ACCESS.2023.3234743
Hui, J., Wu, C.,
Li, X., Huang, L., Jiang, Y., & Zhang, B. (2023). The effect of light
availability on photosynthetic responses of four Aglaonema commutatum
cultivars with contrasting leaf pigment. Applied Sciences, 13(5), 3021. https://doi.org/10.3390/app13053021
Kavitha, P., &
S.D., L. (2024). Ant colony optimization algorithm for feature selection in
sentiment analysis of social media data. ICTACT Journal on Soft Computing,
14(4), 3334–3339. https://doi.org/10.21917/ijsc.2024.0468
Kim, S., &
Kim, D. (2023). Securing the cyber resilience of a blockchain-based railroad
non-stop customs clearance system. Sensors, 23, 2914. https://doi.org/10.3390/s23062914
Kunhare, N.,
Tiwari, R., & Dhar, J. (2022). Intrusion detection system using hybrid
classifiers with meta-heuristic algorithms for the optimization and feature
selection by genetic algorithm. Computers and Electrical Engineering, 103,
108383. https://doi.org/10.1016/j.compeleceng.2022.108383
Mohammad, R.,
Saeed, F., Almazroi, A., Alsubaei, F., & Almazroi, A. (2024). Enhancing
intrusion detection systems using a deep learning and data augmentation
approach. Systems, 12(3), 79. https://doi.org/10.3390/systems12030079
Mohsenabad, H. N.,
& Tut, M. A. (2024). Optimizing cybersecurity attack detection in computer
networks: A comparative analysis of bio-inspired optimization algorithms using
the CSE-CIC-IDS 2018 dataset. Applied Sciences, 14(3), 1044. https://doi.org/10.3390/app14031044
Moustafa, N.,
Koroniotis, N., Keshk, M., Zomaya, A., & Tari, Z. (2023). Explainable
intrusion detection for cyber defences in the Internet of Things: Opportunities
and solutions. IEEE Communications Surveys & Tutorials, 25(3),
1775–1807. https://doi.org/10.1109/COMST.2023.3280465
Narmadha, S.,
& Balaji, N. (2025). Improved network anomaly detection system using
optimized autoencoder-LSTM. Expert Systems with Applications, 273,
126854. https://doi.org/10.1016/j.eswa.2025.126854
Neto, E., Iqbal,
S., Buffett, S., Sultana, M., & Taylor, A. (2025). Deep learning for
intrusion detection in emerging technologies: A comprehensive survey and new
perspectives. Artificial Intelligence Review, 58(11), 340. https://doi.org/10.1007/s10462-025-11346-z
Owusu, E. O.,
Danlard, I., Opoku, G., Dede, A., Klogo, G. S., Boateng, K. O., & Akowuah,
E. K. (2026). A systematic review of machine learning and deep learning
techniques for DDoS attack mitigation in IoT and edge computing systems. Security
and Privacy, 9(1), e70147. https://doi.org/10.1002/spy2.70147
Rajput, V., Mulay,
P., & Mahajan, C. (2024). Bio-inspired algorithms for feature engineering:
Analysis, applications and future research directions. Information Discovery
and Delivery, 53(1), 56–71. https://doi.org/10.1108/IDD-11-2022-0118
Reed, A., Dooley,
L., & Kouadri Mostefaoui, S. (2025). Minimal overhead modelling of slow DoS
attack detection for resource-constrained IoT networks. Future Internet, 17(10),
432. https://doi.org/10.3390/fi17100432
Safitra, M.,
Lubis, M., & Fakhrurroja, H. (2023). Counterattacking cyber threats: A
framework for the future of cybersecurity. Sustainability, 15(18),
13369. https://doi.org/10.3390/su151813369
Sajid, M., Malik,
K. R., Almogren, A., Malik, T. S., Khan, A. H., Tanveer, J., & Rehman, A.
U. (2024). Enhancing intrusion detection: A hybrid machine and deep learning
approach. Journal of Cloud Computing, 13(1), 123. https://doi.org/10.1186/s13677-024-00685-x
Susilo, B., Muis,
A., & Sari, R. (2025). Intelligent intrusion detection system against
various attacks based on a hybrid deep learning algorithm. Sensors, 25(2),
580. https://doi.org/10.3390/s25020580
Udurume, M.,
Shakhov, V., & Koo, I. (2024). Comparative analysis of deep convolutional
neural network–bidirectional long short-term memory and machine learning
methods in intrusion detection systems. Applied Sciences, 14(16), 6967. https://doi.org/10.3390/app14166967
Vanitha, S., &
Balasubramanie, P. (2022). Improved ant colony optimization and machine
learning based ensemble intrusion detection model. Intelligent Automation
& Soft Computing, 36(1), 849–864. https://doi.org/10.32604/iasc.2023.032324
Vishnu, P., & Soumya,
S. (2024). Advancements in anomaly detection techniques in network traffic: The
role of artificial intelligence and machine learning. Journal of Scientific
Research and Technology, 38–48. https://doi.org/10.61808/jsrt114
Yuan, X., Han, S.,
Huang, W., Ye, H., Kong, X., & Zhang, F. (2024). A simple framework to
enhance the adversarial robustness of deep learning-based intrusion detection
system. Computers & Security, 137, 103644. https://doi.org/10.1016/j.cose.2023.103644
Zhang, C., Li, J.,
Wang, N., & Zhang, D. (2025). Research on intrusion detection method based
on transformer and CNN-BiLSTM in Internet of Things. Sensors, 25(9),
2725. https://doi.org/10.3390/s25092725
Zhang, X., &
Yin, J. (2025). Optimized extreme learning machines with deep learning for
high-performance network traffic classification. Scientific Reports, 15(1),
33199. https://doi.org/10.1038/s41598-025-16980-9
Zhong, X., Liu,
Y., Xie, K., & Xie, S. (2022). A local electricity and carbon trading
method for multi-energy microgrids considering cross-chain interaction. Sensors, 22(18), 6935. https://doi.org/10.3390/s22186935
Zhou, X., Yang, J., Li, Y., Li, S., Su, Z., & Lu, J. (2025). EC-TRL: Evolutionary-weighted clustering and transformer-augmented reinforcement learning for dynamic resource scheduling in edge cloud environments. IEEE Internet of Things Journal, 12(6), 7503–7517. https://doi.org/10.1109/JIOT.2024.3496200