AI Chat Paper
Note: Please note that the following content is generated by AMiner AI. SciOpen does not take any responsibility related to this content.
{{lang === 'zh_CN' ? '文章概述' : 'Summary'}}
{{lang === 'en_US' ? '中' : 'Eng'}}
Chat more with AI
PDF (1.3 MB)
Collect
Submit Manuscript AI Chat Paper
Show Outline
Outline
Show full outline
Hide outline
Outline
Show full outline
Hide outline
Review | Open Access

Graph and Transformer-Based Deep Learning Paradigms for DDoS Detection: A Systematic and Critical Survey

Noor Mueen Mohammed Ali Hayder1,2Seyed Amin Hosseini Seno2( )Mehdi Ebady Manaa3,4Hamid Noori2Davood Zabihzadeh5
Faculty of Nursing, Babylon University, Hilla, Iraq
Department of Computer Engineering, Ferdowsi University of Mashhad, Mashhad, Iran
Intelligent Medical Systems Department, College of Sciences, Al-Mustaqbal University, Babylon, Iraq
College of Information Technology, University of Babylon, Babylon, Iraq
Computer Engineering Department, Hakim Sabzevari University (HSU), Sabzevar, Iran
Show Author Information

Abstract

With the rapid expansion of networked systems, Distributed Denial-of-Service (DDoS) attacks have become a major threat to Internet security and service availability. Due to their limited scalability, incapacity to capture temporal and relational relationships, and decreased detection accuracy under dynamic and high-volume network traffic, traditional machine learning algorithms frequently fail in large-scale DDoS scenarios. This encourages the application of deep learning techniques that can simulate intricate relationships. This survey systematically reviews graph-based deep learning and Transformer models for DDoS detection. We categorize methods for transforming network traffic into graph representations and analyze key architectures, including GraphSAGE, GCN, GAT, spatio-temporal Transformers, and hybrid GNN–Transformer models. We summarize the evaluation metrics, datasets, feature extraction strategies, and performance trends reported across existing studies. Results indicate that these approaches effectively capture topological and temporal patterns to detect coordinated attacks. Our comparative review shows that these approaches are capable of capturing both topological and temporal patterns in network traffic, enabling more accurate identification of coordinated DDoS attacks reported in the literature. Remaining challenges include explainability, scalability, data imbalance, and limited generalization. The survey’s contributions are a unified taxonomy, comparative analysis, identification of open challenges, and future research directions toward explainable, lightweight, and federated frameworks.

References

【1】
【1】
 
 
Computers, Materials & Continua

{{item.num}}

Comments on this article

Go to comment

< Back to all reports

Review Status: {{reviewData.commendedNum}} Commended , {{reviewData.revisionRequiredNum}} Revision Required , {{reviewData.notCommendedNum}} Not Commended Under Peer Review

Review Comment

Close
Close
Cite this article:
Hayder NMMA, Seno SAH, Manaa ME, et al. Graph and Transformer-Based Deep Learning Paradigms for DDoS Detection: A Systematic and Critical Survey. Computers, Materials & Continua, 2026, 88(1). https://doi.org/10.32604/cmc.2026.078546

5

Views

0

Downloads

0

Crossref

0

Web of Science

0

Scopus

Received: 03 January 2026
Accepted: 04 March 2026
Published: 08 May 2026
© The Author 2026.

This work is licensed under a Creative Commons Attribution 4.0 International License, which permits unrestricted use, distribution, and reproduction in any medium, provided the original work is properly cited.