Software-Defined Networking Approaches for Mitigating IEEE 802.11 Deauthentication and Management-Frame Attacks: A Systematic Literature Review

Authors

  • Geoffrey Mulwa Mutiwa School of Computing and Informatics, Mount Kenya University, P. O. Box 342-01000, Thika– Kenya https://orcid.org/0009-0007-1482-4413
  • John Gichuki Ndia School of Computing and Information Technology, Murang’a University of Technology, P.O. Box 75-10200, Murang’a, Kenya
  • Isaac Nyabisa Oteyo School of Computing and Information Technology, Jomo Kenyatta University of Agriculture and Technology, P.O. Box 62000-00200, Nairobi, Kenya

DOI:

https://doi.org/10.62760/iteecs.5.3.2026.212

Keywords:

Centralized monitoring, Evidence classification, Intrusion prevention, Programmable data planes, Wireless availability

Abstract

IEEE 802.11 wireless local area networks remain exposed to deauthentication and related management-frame attacks that interrupt service and can support rogue-access-point or interception attacks. Protected Management Frames, wireless intrusion detection systems, and wireless intrusion prevention systems reduce exposure, but residual denial-of-service conditions, sensor dependence, false alarms, and limited network-wide response remain. This systematic literature review assesses how software-defined networking can support mitigation through centralized monitoring, programmable enforcement, dynamic policy control, hybrid detection, programmable data planes, and resilient controllers. A PRISMA 2020-inspired process identified 549 records, removed 96 duplicates, screened 453 records, assessed 126 full texts, and retained 50 studies. Primary screening and extraction were conducted by one reviewer and checked by two co-authors. No disagreements arose. No disagreements arose. Eighteen studies provided direct wireless or management-frame evidence, while 32 provided transferable SDN or software-defined WLAN evidence. Centralized visibility appeared in 22 studies, programmable enforcement in 18, and reactive mitigation in 13. Most evidence came from simulations, emulation, testbeds, surveys, standards, or conceptual architectures rather than production enterprise WLANs. The findings support SDN as a complementary control and response layer, not a proven standalone replacement for protocol-level protection or wireless monitoring. Priority work includes enterprise trials, standardized datasets, controller-resilience testing, explainable detection, Wi-Fi 7 evaluation, and integrated PMF-SDN architectures.

References

“IEEE Standard for Information Technology--Telecommunications and Information Exchange between Systems - local and metropolitan area networks--specific requirements - part 11: wireless lan medium access control (MAC) and physical layer (PHY) specifications”, IEEE Std 802.11-2020 (Revision of IEEE Std 802.11-2016), pp. 1 - 4379, February 2021. https://doi.org/10.1109/IEEESTD.2021.9363693

“IEEE Standard for Information technology - Telecommunications and information exchange between systems - Local and metropolitan area networks - specific requirements. part 11: wireless lan medium access control (MAC) and physical layer (PHY) specifications amendment 4: protected management frames”, IEEE Std 802.11w-2009 (Amendment to IEEE Std 802.11-2007 as amended by IEEE Std 802.11k-2008, IEEE Std 802.11r-2008, and IEEE Std 802.11y-2008) pp. 1 - 111, 30 September 2009. https://doi.org/10.1109/IEEESTD.2009.5278657

K. Bicakci and B. Tavli, “Denial-of-service attacks and countermeasures in IEEE 802.11 wireless networks”, Computer Standards and Interfaces, Vol. 31, No. 5, pp. 931–941, 2009. https://doi.org/10.1016/j.csi.2008.09.038

J. Bellardo and S. Savage, “802.11 denial-of-service attacks: real vulnerabilities and practical solutions”, Proceedings of the 12th USENIX Security Symposium, pp. 15–27, 2003. [CrossRef]

D. Schepers, A. Ranganathan, and M. Vanhoef, “On the robustness of Wi-Fi deauthentication countermeasures”, Proceedings of the 15th ACM Conference on Security and Privacy in Wireless and Mobile Networks, pp. 245–256, 2022. https://doi.org/10.1145/3507657.3528548

M. Vanhoef and E. Ronen, “Dragonblood: analyzing the dragonfly handshake of WPA3 and EAP-PWD”, 2020 IEEE Symposium on Security and Privacy (SP), San Francisco, CA, USA, pp. 517-533, 2020. https://doi.org/10.1109/SP40000.2020.00031

W. Kim, S. Kim, and H. Lim, “Malicious data frame injection attack without seizing association in IEEE 802.11 wireless LANs”, IEEE Access, Vol. 9, pp. 16649-16660, 2021. https://doi.org/10.1109/ACCESS.2021.3054130

M. Thankappan, H. Rifà-Pous, and C. Garrigues, “Multi-channel man in the middle attacks against protected Wi-Fi networks: A state-of-the-art review”, Expert Systems with Applications, Vol. 210, art. no. 118401, 2022. https://doi.org/10.1016/j.eswa.2022.118401

K. Lounis, S. H. H. Ding, and M. Zulkernine, “Cut It: Deauthentication attacks on protected management frames in WPA2 and WPA3”, Foundations and Practice of Security, pp. 235–252, 2022. https://doi.org/10.1007/978-3-031-08147-7_16

E. Chatzoglou, G. Kambourakis, and C. Kolias, “How is your Wi-Fi connection today? DoS attacks on WPA3-SAE”, Journal of Information Security and Applications, Vol. 64, art. no. 103058, 2022. https://doi.org/10.1016/j.jisa.2021.103058

C. Liu and J. Qiu, “Performance study of 802.11w for preventing DoS attacks on wireless local area networks”, Wireless Personal Communications, Vol. 95, pp. 1031–1053, 2017. https://doi.org/10.1007/s11277-016-3812-9

S. C. Sethuraman, S. Dhamodaran, and V. Vijayakumar, “Intrusion detection system for detecting wireless attacks in IEEE 802.11 networks”, IET Networks, Vol. 8, No. 4, pp. 219–232, 2019. https://doi.org/10.1049/iet-net.2018.5050

N. Dalal, N. Akhtar, A. Gupta, N. Karamchandani, G. S. Kasbekar, and J. Parekh, “A wireless intrusion detection system for 802.11 WPA3 networks”, 2022 14th International Conference on COMmunication Systems & NETworkS (COMSNETS), Bangalore, India, pp. 384-392, 2022. https://doi.org/10.1109/COMSNETS53615.2022.9668542

A. Amoordon, V. Deniau, A. Fleury, and C. Gransart, “A single supervised learning model to detect fake access points, frequency sweeping jamming and deauthentication attacks in IEEE 802.11 networks”, Machine Learning with Applications, Vol. 10, art. no. 100389, 2022. https://doi.org/10.1016/j.mlwa.2022.100389

D. Kreutz, F. M. V. Ramos, P. E. Veríssimo, C. E. Rothenberg, S. Azodolmolky and S. Uhlig, “Software defined networking: a comprehensive survey”, Proceedings of the IEEE, Vol. 103, No. 1, pp. 14-76, 2015. https://doi.org/10.1109/JPROC.2014.2371999

I. Ahmad, S. Namal, M. Ylianttila and A. Gurtov, “Security in software defined networks: a survey”, IEEE Communications Surveys and Tutorials, Vol. 17, No. 4, pp. 2317-2346, Fourth quarter 2015. https://doi.org/10.1109/COMST.2015.2474118

S. Scott-Hayward, S. Natarajan and S. Sezer, “A survey of security in software defined networks”, IEEE Communications Surveys and Tutorials, Vol. 18, No. 1, pp. 623-654, 2016. https://doi.org/10.1109/COMST.2015.2453114

L. F. Eliyan and R. D. Pietro, “DoS and DDoS attacks in software defined networks: A survey of existing solutions and research challenges”, Future Generation Computer Systems, Vol. 122, pp. 149–171, 2021. https://doi.org/10.1016/j.future.2021.03.011

R. Cwalinski and H. Koenig, “SDN based attack detection in wireless local area networks”, 2018 4th IEEE Conference on Network Softwarization and Workshops (NetSoft), Montreal, QC, Canada, pp. 207-211, 2018. https://doi.org/10.1109/NETSOFT.2018.8460121

P. Zanna, P. Radcliffe, and D. Kumar, “Preventing attacks on wireless networks using SDN-controlled OODA loops and cyber kill chains”, Sensors, Vol. 22, No. 23, art. no. 9481, 2022. https://doi.org/10.3390/s22239481

P. Manso, J. Moura, and C. Serrão, “SDN-based intrusion detection system for early detection and mitigation of DDoS attacks”, Information, Vol. 10, No. 3, art. no. 106, 2019. https://doi.org/10.3390/info10030106

Y. Xu and Y. Liu, “DDoS attack detection under SDN context”, IEEE INFOCOM 2016 - The 35th Annual IEEE International Conference on Computer Communications, San Francisco, CA, USA, pp. 1-9, 2016. https://doi.org/10.1109/INFOCOM.2016.7524500

P. Zanna, P. Radcliffe and D. Kumar, “WP4: A P4 programmable IEEE 802.11 data plane”, 2020 30th International Telecommunication Networks and Applications Conference (ITNAC), Melbourne, VIC, Australia, pp. 1-6, 2020. https://doi.org/10.1109/ITNAC50341.2020.9315141

K. Koš?ál, R. Bencel, M. Ries, P. Trúchly, and I. Kotuliak, “High performance SDN WLAN architecture”, Sensors, Vol. 19, No. 8, art. no. 1880, 2019. https://doi.org/10.3390/s19081880

A. AlSabeh, J. Khoury, E. Kfoury, J. Crichigno, and E. Bou-Harb, “A survey on security applications of P4 programmable switches and a STRIDE-based vulnerability assessment”, Computer Networks, Vol. 207, art. no. 108800, 2022. https://doi.org/10.1016/j.comnet.2022.108800

C. J. Bernardos, A. de la Oliva, P. Serrano, A. Banchs, L. M. Contreras, H. Jin, and J. C. Zúñiga, “An architecture for software defined wireless networking”, IEEE Wireless Communications, Vol. 21, No. 3, pp. 52–61, 2014. https://doi.org/10.1109/MWC.2014.6845049

L. Suresh, J. Schulz-Zander, R. Merz, A. Feldmann, and T. Vazao, “Towards programmable enterprise WLANs with Odin”, Proceedings of the first Workshop on Hot topics in Software Defined Networks, pp. 115–120, 2012. https://doi.org/10.1145/2342441.2342465

H. Moura, A. R. Alves, J. R. A. Borges, D. F. Macedo, and M. A. M. Vieira, “Ethanol: A software defined wireless networking architecture for IEEE 802.11 networks”, Computer Communications, Vol. 149, pp. 176 – 188, 2020. https://doi.org/10.1016/j.comcom.2019.10.010

R. R. Fontes, S. Afzal, S. H. B. Brito, M. A. S. Santos and C. E. Rothenberg, “Mininet-WiFi: Emulating software defined wireless networks”, 2015 11th International Conference on Network and Service Management (CNSM), Barcelona, Spain, pp. 384 - 389, 2015. https://doi.org/10.1109/CNSM.2015.7367387

H. A. Oulahyane, A. Bahnasse, A. Bakali, S. Broumi, I. M. El-Hasnony, and M. Talea, “Secure model for dynamic access control and unreliable access point detection: Improving QoS through SDN in wireless networks”, SN Computer Science, Vol. 5, art. no. 88, 2024. https://doi.org/10.1007/s42979-023-02407-7

K. I. Qureshi, L. Wang, L. Sun, C. Zhu and L. Shu, “A review on design and implementation of software defined WLANs”, IEEE Systems Journal, Vol. 14, No. 2, pp. 2601-2614, June 2020. https://doi.org/10.1109/JSYST.2019.2960400

N. S. Shaji and R. Muthalagu, “Survey on security aspects of distributed software-defined networking controllers in an enterprise SD-WLAN”, Digital Communications and Networks, Vol. 10, No. 6, pp. 1716–1731, 2024. https://doi.org/10.1016/j.dcan.2023.09.004

K. Giotis, G. Androulidakis, and B. S. Maglaris, “A scalable anomaly detection and mitigation architecture for legacy networks via an OpenFlow middlebox”, Security and Communications Networks, Vol. 9, No. 13, pp. 1958 – 1970, 2016. https://doi.org/10.1002/sec.1368

M. Eian and S. F. Mjølsnes, “A formal analysis of IEEE 802.11w deadlock vulnerabilities”, 2012 Proceedings IEEE INFOCOM, Orlando, FL, USA, pp. 918 - 926, 2012. https://doi.org/10.1109/INFCOM.2012.6195841

M. Vanhoef and P. Piessens, “Key reinstallation attacks: Forcing nonce reuse in WPA2”, Proceedings of the 2017 ACM SIGSAC Conference on Computer and Communications Security, pp. 1313–1328, 2017. https://doi.org/10.1145/3133956.3134027

K. Lounis and M. Zulkernine, “Bad-Token: Denial of service attacks on WPA3,” Proceedings of the 12th International Conference on Security of Information and Networks, pp. 1–8, 2019. https://doi.org/10.1145/3357613.3357629

R. Korolkov, S. Kutsak, and V. Voskoboinyk, “Analysis of deauthentication attack in IEEE 802.11 networks and a proposal for its detection”, Bulletin of V.N. Karazin Kharkiv National University, Series «Mathematical Modeling. Information Technology. Automated Control Systems, Vol. 50, pp. 58–70, 2021. https://doi.org/10.26565/2304-6201-2021-50-06

A. E. Abdallah, M. Hamdan, M. S. M. Gismalla, A. O. Ibrahim, N. S. Aljurayban, W. Nagmeldin, and M. H. H. Khairi, “Detection of management-frames-based denial-of-service attack in wireless LAN networks using an artificial neural network”, Sensors, Vol. 23, No. 5, art. no. 2663, 2023. https://doi.org/10.3390/s23052663

W. Ge, J. Li, and S. Sampalli, “Prevention of management frame attacks on 802.11 WLANs”, International Journal of Wireless and Mobile Computing, Vol. 3, No. 3, pp. 133–144, 2009. https://doi.org/10.1504/IJWMC.2009.028895

R. Cwalinski and H. Koenig, “Identifying malicious traffic in software defined wireless local area networks”, 2018 International Conference on Computing, Networking and Communications (ICNC), Maui, HI, USA, pp. 195-199, 2018. https://doi.org/10.1109/ICCNC.2018.8390307

J. Wang and L. Wang, “LR-STGCN: Detecting and mitigating low-rate DDoS attacks in SDN based on a spatial-temporal graph neural network”, Computers & Security, Vol. 154, art. no. 104460, 2025. https://doi.org/10.1016/j.cose.2025.104460

Y. Liu, T. Guan, J. Zhang, D. Liang, and Q. Guan, “Design and optimization of an integrated and trustworthy WLAN network architecture based on SDN for power systems”, Proceedings of the 2024 International Conference on Cloud Computing and Big Data, pp. 86–92, 2024. https://doi.org/10.1145/3695080.3695095

M. Elhejazi, and M. Musbah, “Dynamic defense-in-depth model for the SDN control layer to improve OpenFlow protocol security”, The 7th International Conference on Engineering & MIS 2021, pp. 1–7, 2021. https://doi.org/10.1145/3492547.3492625

H. Wang, L. Xu and G. Gu, “FloodGuard: A DoS Attack Prevention Extension in Software-Defined Networks”, 2015 45th Annual IEEE/IFIP International Conference on Dependable Systems and Networks, Rio de Janeiro, Brazil, pp. 239-250, 2015. https://doi.org/10.1109/DSN.2015.27

N. Mazhar, R. Salleh, M. A. Hossain, and M. Zeeshan, “SDN based intrusion detection and prevention systems using manufacturer usage description: A survey”, International Journal of Advanced Computer Science and Applications, Vol. 11, No. 12, art. no. 83, 2020. https://doi.org/10.14569/IJACSA.2020.0111283

A. A. Alashhab, M. S. M. Zahid, A. Muneer, and M. Abdullahi, “Low-rate DDoS attack detection using deep learning for SDN-enabled IoT networks”, International Journal of Advanced Computer Science and Applications, Vol. 13, No. 11, art. no. 41, 2022. https://doi.org/10.14569/IJACSA.2022.0131141

Y. Gao and Z. Wang, “A review of P4 programmable data planes for network security”, Mobile Information Systems, Vol. 2021, No. 1, art. no. 1257046, 2021. https://doi.org/10.1155/2021/1257046

S. S. Baidya and R. Hewett, “SDN-based edge computing security: Detecting and mitigating flow rule attacks”, Proceedings of the 4th ACM/IEEE Symposium on Edge Computing, pp. 364 – 370, 2019. https://doi.org/10.1145/3318216.3363374

Q. Qin, K. Poularakis, G. Iosifidis, S. Kompella and L. Tassiulas, “SDN controller placement with delay overhead balancing in wireless edge networks”, IEEE Transactions on Network and Service Management, Vol. 15, No. 4, pp. 1446-1459, December 2018. https://doi.org/10.1109/TNSM.2018.2876064

R. Doriguzzi-Corin, S. Millar, S. Scott-Hayward, J. Martínez-del-Rincón and D. Siracusa, “Lucid: a practical, lightweight deep learning solution for DDoS attack detection”, IEEE Transactions on Network and Service Management, Vol. 17, No. 2, pp. 876-889, June 2020. https://doi.org/10.1109/TNSM.2020.2971776

M. J. Page et al., “The PRISMA 2020 statement: An updated guideline for reporting systematic reviews”, BMJ, Vol. 372, art. no. 71, 2021. https://doi.org/10.1136/bmj.n71

B. Kitchenham, O. P. Brereton, D. Budgen, M. Turner, J. Bailey, and S. Linkman, “Systematic literature reviews in software engineering—A systematic literature review”, Information and Software Technology, Vol. 51, No. 1, pp. 7–15, 2009. https://doi.org/10.1016/j.infsof.2008.09.009

C. Wohlin, “Guidelines for snowballing in systematic literature studies and a replication in software engineering”, Proceedings of the 18th International Conference on Evaluation and Assessment in Software Engineering, pp. 1–10, 2014. https://doi.org/10.1145/2601248.2601268

K. Petersen, S. Vakkalanka, and L. Kuzniarz, “Guidelines for conducting systematic mapping studies in software engineering: An update”, Information and Software Technology, Vol. 64, pp. 1–18, 2015. https://doi.org/10.1016/j.infsof.2015.03.007

N. McKeown et al., “OpenFlow: Enabling innovation in campus networks”, ACM SIGCOMM Computer Communication Review, Vol. 38, No. 2, pp. 69–74, 2008. https://doi.org/10.1145/1355734.1355746

B. A. A. Nunes, M. Mendonca, X. -N. Nguyen, K. Obraczka and T. Turletti, “A survey of software-defined networking: past, present, and future of programmable networks”, IEEE Communications Surveys & Tutorials, Vol. 16, No. 3, pp. 1617-1634, 2014. https://doi.org/10.1109/SURV.2014.012214.00180

D. B. Rawat and S. R. Reddy, “Software defined networking architecture security and energy efficiency: a survey”, IEEE Communications Surveys & Tutorials, Vol. 19, No. 1, pp. 325-346, 2017. https://doi.org/10.1109/COMST.2016.2618874

M. Dabbagh, B. Hamdaoui, M. Guizani and A. Rayes, “Software-defined networking security: pros and cons”, IEEE Communications Magazine, Vol. 53, No. 6, pp. 73-79, June 2015. https://doi.org/10.1109/MCOM.2015.7120048

I. Alsmadi and D. Xu, “Security of software defined networks: A survey”, Computers & Security, Vol. 53, pp. 79–108, 2015. https://doi.org/10.1016/j.cose.2015.05.006

R. Sahay, W. Meng, and C. D. Jensen, “The application of software defined networking on securing computer networks: A survey”, Journal of Network and Computer Applications, Vol. 131, pp. 89–108, 2019. https://doi.org/10.1016/j.jnca.2019.01.019

W. Li, W. Meng, and L. F. Kwok, “A survey on OpenFlow-based software defined networks: Security challenges and countermeasures”, Journal of Network and Computer Applications, Vol. 68, pp. 126–139, 2016. https://doi.org/10.1016/j.jnca.2016.04.011

J. C. C. Chica, J. C. Imbachi, and J. F. B. Vega, “Security in SDN: A survey”, Journal of Network and Computer Applications, Vol. 159, art. no. 102595, 2020. https://doi.org/10.1016/j.jnca.2020.102595

J. Singh and S. Behal, “Detection and mitigation of DDoS attacks in SDN: A review, research challenges and future directions”, Computer Science Review, Vol. 37, art. no. 100279, 2020. https://doi.org/10.1016/j.cosrev.2020.100279

S. Kaur, K. Kumar, N. Aggarwal, and G. Singh, “A survey of DDoS defence solutions in SDN: Taxonomy, research challenges, and future directions”, Computers & Security, Vol. 110, art. no. 102423, 2021. https://doi.org/10.1016/j.cose.2021.102423

R. Deb and S. Roy, “A survey of vulnerability and information security in software-defined networking”, Computer Networks, Vol. 206, art. no. 108802, 2022. https://doi.org/10.1016/j.comnet.2022.108802

B. Ayodele and V. Buttigieg, “SDN as a defence mechanism: A survey”, International Journal of Information Security, Vol. 23, pp. 141–185, 2024. https://doi.org/10.1007/s10207-023-00764-1

N. Ahuja, G. Singal, D. Mukhopadhyay, and N. Kumar, “Automated DDoS attack detection in software defined networking”, Journal of Network and Computer Applications, Vol. 187, art. no. 103108, 2021. https://doi.org/10.1016/j.jnca.2021.103108

A. AlEroud and I. Alsmadi, “Identifying cyber-attacks on software defined networks: An inference based intrusion detection approach”, Journal of Network and Computer Applications, Vol. 80, pp. 152–164, 2017. https://doi.org/10.1016/j.jnca.2016.12.024

K. K. Karmakar, V. Varadarajan, and U. Tupakula, “Mitigating attacks in software defined networks”, Cluster Computing, Vol. 22, pp. 1143–1157, 2019. https://doi.org/10.1007/s10586-018-02900-2

A. Y. Ding, J. Crowcroft, S. Tarkoma, and H. Flinck, “Software defined networking for security improvement in wireless mobile networks”, Computer Networks, Vol. 66, pp. 94–101, 2014. https://doi.org/10.1016/j.comnet.2014.03.009

M. Chen, Y. Qian, S. Mao, W. Tang, and X. Yang, “Software-defined mobile networks security”, Mobile Networks and Applications, Vol. 21, pp. 729–743, 2016. https://doi.org/10.1007/s11036-015-0665-5

A. Gudipati, D. Perry, L. E. Li, and S. Katti, “SoftRAN: Software defined radio access network”, Proceedings of the second ACM SIGCOMM workshop on Hot topics in software defined networking, pp. 25–30, 2013. https://doi.org/10.1145/2491185.2491207

L. E. Li, Z. M. Mao and J. Rexford, “Toward software defined cellular networks”, 2012 European Workshop on Software Defined Networking, Darmstadt, Germany, pp. 7-12, 2012. https://doi.org/10.1109/EWSDN.2012.28

P. Bosshart et al., “P4: Programming protocol-independent packet processors”, ACM SIGCOMM Computer Communication Review, Vol. 44, No. 3, pp. 87–95, 2014. https://doi.org/10.1145/2656877.2656890

R. Doriguzzi-Corin, L. A. D. Knob, L. Mendozzi, D. Siracusa, and M. Savi, “Introducing packet-level analysis in programmable data planes to advance network intrusion detection”, Computer Networks, Vol. 239, art. no. 110162, 2024. https://doi.org/10.1016/j.comnet.2023.110162

A. Mazloum, A. AlSabeh, E. Kfoury, and J. Crichigno, “Security applications in P4: Implementation and lessons learned”, Computer Networks, Vol. 257, art. no. 111011, 2025. https://doi.org/10.1016/j.comnet.2024.111011

M. E. ?ahin and M. Demirci, “HELP4DNS: Leveraging the programmable data plane for effective and robust defense against DDoS attacks on DNS”, Journal of Network and Computer Applications, Vol. 240, art. no. 104198, 2025. https://doi.org/10.1016/j.jnca.2025.104198

A. I. Hassan, E. A. E. Reheem, and S. K. Guirguis, “An entropy and machine learning based approach for DDoS attacks detection in software defined networks”, Scientific Reports, Vol. 14, art. no. 18159, 2024. https://doi.org/10.1038/s41598-024-67984-w

H. A. Butt, K. S. A. Harthy, M. A. Shah, M. Hussain, R. Amin, and M. U. Rehman, “Enhanced DDoS detection using advanced machine learning and ensemble techniques in software defined networking”, Computers, Materials and Continua, Vol. 81, No. 2, pp. 3003–3031, 2024. https://doi.org/10.32604/cmc.2024.057185

D. Han, H. Li, X. Fu, and S. Zhou, “Traffic feature selection and distributed denial-of-service attack detection in software defined networks based on machine learning”, Sensors, Vol. 24, No. 13, art. no. 4344, 2024. https://doi.org/10.3390/s24134344

S. Kaur, K. Kumar, and N. Aggarwal, “Enhancing DDoS defense in SDN using hierarchical machine learning models”, Journal of Network and Computer Applications, Vol. 239, art. no. 104168, 2025. https://doi.org/10.1016/j.jnca.2025.104168

M. Yue, H. Yan, R. Han, and Z. Wu, “A DDoS attack detection method based on IQR and DFFCNN in SDN”, Journal of Network and Computer Applications, Vol. 240, art. no. 104203, 2025. https://doi.org/10.1016/j.jnca.2025.104203

D. Kalambe, D. Sharma, P. Kadam, and S. Surati, “A comprehensive plane-wise review of DDoS attacks in SDN: Leveraging detection and mitigation through machine learning and deep learning”, Journal of Network and Computer Applications, Vol. 235, art. no. 104081, 2025. https://doi.org/10.1016/j.jnca.2024.104081

I. Varalakshmi and M. Thenmozhi, “Entropy based earlier detection and mitigation of DDOS attack using stochastic method in SDN-IOT”, Measurement, Vol. 39, art. no. 101873, 2025. https://doi.org/10.1016/j.measen.2025.101873

W. Wang, Y. Liu, Q. Meng, and Z. Chen, “DDoS attack detection and defense techniques in software defined networks: A survey”, Computer Science Review, Vol. 60, art. no. 100921, 2026. https://doi.org/10.1016/j.cosrev.2026.100921

B. Shyryn, T. A. Ahanger, and A. Zhumadillayeva, “Enhancing software-defined network security with deep learning: A comprehensive review”, International Journal of Information Security, Vol. 25, art. no. 66, 2026. https://doi.org/10.1007/s10207-026-01232-2

S. Ganeshan and R. K. Ramasamy, “A systematic review of machine-learning-based detection of DDoS attacks in software-defined networks”, Future Internet, Vol. 18, No. 2, art. no. 109, 2026. https://doi.org/10.3390/fi18020109

O. Polat, Ö. Durmu?, F. Do?an, M. Türko?lu, H. ?eker, F. Atasoy, and E. Algül, “Supervised and deep learning techniques for DDoS detection in software-defined network architectures: A systematic review”, Engineering Science and Technology an International Journal, Vol. 75, art. no. 102290, 2026. https://doi.org/10.1016/j.jestch.2026.102290

Z. You, L. Mai, S. Suo, Q. Lin, and Z. Xiong, “In-depth analysis of DDoS anomaly detection in software defined networks”, Journal of Wireless Communications and Networking, 2026. https://doi.org/10.1186/s13638-026-02630-9

M. Thankappan, H. Rifà-Pous and C. Garrigues, “A signature-based wireless intrusion detection system framework for multi channel man in the middle attacks against protected Wi-Fi networks”, IEEE Access, Vol. 12, pp. 23096-23121, 2024. https://doi.org/10.1109/ACCESS.2024.3362803

M. Thankappan, H. Rifà-Pous, and C. Garrigues, “A distributed and cooperative signature-based intrusion detection system framework for multi-channel man in the middle attacks against protected Wi-Fi networks”, International Journal of Information Security, Vol. 23, pp. 3527–3546, 2024. https://doi.org/10.1007/s10207-024-00899-9

D. Koutras, P. Dimitrellos, P. Kotzanikolaou, and C. Douligeris, “Automated Wi-Fi intrusion detection tool on 802.11 networks”, ITU Journal Future and Evolving Technologies, Vol. 5, No. 1, pp. 88–103, 2024. https://doi.org/10.52953/LHXO3338

J. Machaj, C. Safon, S. Matúška, and P. Brída, “Detection of access point spoofing in the wi-fi fingerprinting based positioning”, Sensors, Vol. 24, No. 23, art. no. 7624, 2024. https://doi.org/10.3390/s24237624

F. Ertam and O. Aydogmus, "Privacy preserving detection of Wi-Fi deauthentication attacks on robotic systems using temporal traffic features”, IEEE Access, Vol. 14, pp. 46634-46649, 2026. https://doi.org/10.1109/ACCESS.2026.3677527

J. Henry and Y. Lee, “Randomized and changing media access control (MAC) addresses: context, network impacts, and use cases”, RFC 9797, June 2025. https://doi.org/10.17487/RFC9797

“IEEE standard for information technology -- telecommunications and information exchange between systems local and metropolitan area networks -- specific requirements - part 11: wireless LAN medium access control (MAC) and physical layer (PHY) specifications - amendment 4: enhancements for wireless LAN sensing”, IEEE Std 802.11bf-2025 (Amendment to IEEE 802.11-2024, as amended by IEEE 802.11bh-2024, IEEE 802.11be-2024, and IEEE 802.11bk-2025), pp. 1-228, September 2025. https://doi.org/10.1109/IEEESTD.2025.11184214

E. Khorov, I. Levitsky, and I. F. Akyildiz, “Current status and directions of IEEE 802.11be, the future Wi-Fi 7”, IEEE Access, Vol. 8, pp. 88664–88688, 2020. https://doi.org/10.1109/ACCESS.2020.2993448

S. Avallone, P. Imputato, and F. Marrone, “Exploiting multiple links with a single interface: A performance study”, Ad Hoc Networks, Vol. 180, art. no. 104029, 2026. https://doi.org/10.1016/j.adhoc.2025.104029

R. G. Sangeetha, C. Hemanth, K. T. Ankitha, and A. Jaiswal, “IEEE 802.11Be WLANs: Performance assessment of multi link operation with unsaturated queues”, Computer Networks, Vol. 281, art. no. 112187, 2026. https://doi.org/10.1016/j.comnet.2026.112187

E. A. A. Mandhari, M. Abdulnabi, R. J. Lontok, and A. Ali, “A systematic literature review on the accuracy of machine learning based DDoS detection techniques in software defined networking”, Discover Computing, Vol. 29, art. no. 147, 2026. https://doi.org/10.1007/s10791-026-10050-y

Downloads

Published

2026-09-28

How to Cite

Mutiwa, G. M., John Gichuki Ndia, & Isaac Nyabisa Oteyo. (2026). Software-Defined Networking Approaches for Mitigating IEEE 802.11 Deauthentication and Management-Frame Attacks: A Systematic Literature Review. International Transactions on Electrical Engineering and Computer Science, 5(3), 189–206. https://doi.org/10.62760/iteecs.5.3.2026.212

Issue

Section

Articles

Similar Articles

1 2 3 4 > >> 

You may also start an advanced similarity search for this article.