Protocol Aware Unsupervised Network Intrusion Detection System

被引:0
|
作者
Ratti, Ritesh [1 ]
Singh, Sanasam Ranbir [1 ]
Nandi, Sukumar [1 ]
机构
[1] Indian Inst Technol, Dept Comp Sci & Engn, Gauhati 781039, Assam, India
关键词
Intrusion Detection System; Unsupervised Machine Learning; Anomaly Detection; Autoencoder network;
D O I
10.1109/TrustCom60117.2023.00208
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
In recent years the number of attacks on computer networks has increased exponentially due to the easy availability of sophisticated tools and attack techniques. These attacks are possible due to existing vulnerabilities in networking protocols. Most of the machine learning based intrusion detection systems proposed earlier, to mitigate these attacks, consider training a model for the group of attacks, which doesn't consider protocol-specific properties into account and is biased toward attacks where most of the data is available. In this paper, we propose protocol aware unsupervised method based on an autoencoder-based learning approach to detect the attack in network flows by training the model using only normal traffic and using reconstruction error as the parameter to classify the attack event. Our proposed method is based on building protocol aware model by combining individual protocol-specific encoders and learning the protocol channel importance using attention mechanism. We perform various experiments on different recent datasets like CICDDoS2019, and CICIDS2018, and experimental results show that the proposed protocol aware model performs better than the non-protocol aware method.
引用
收藏
页码:1524 / 1531
页数:8
相关论文
共 50 条
  • [21] Recurrent network in Network Intrusion Detection System
    Xue, JS
    Sun, JZ
    Zhang, X
    PROCEEDINGS OF THE 2004 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-7, 2004, : 2676 - 2679
  • [22] An Immune inspired Unsupervised Intrusion Detection System for Detection of Novel Attacks
    Jha, Manjari
    Acharya, Raj
    IEEE INTERNATIONAL CONFERENCE ON INTELLIGENCE AND SECURITY INFORMATICS: CYBERSECURITY AND BIG DATA, 2016, : 292 - 297
  • [23] The sound of intrusion: A novel network intrusion detection system
    Aldarwbi, Mohammed Y.
    Lashkari, Arash H.
    Ghorbani, Ali A.
    COMPUTERS & ELECTRICAL ENGINEERING, 2022, 104
  • [24] Anomaly detection based on unsupervised niche clustering with application to network intrusion detection
    Leon, E
    Nasraoui, F
    Gomez, J
    CEC2004: PROCEEDINGS OF THE 2004 CONGRESS ON EVOLUTIONARY COMPUTATION, VOLS 1 AND 2, 2004, : 502 - 508
  • [25] An autonomous intrusion detection system for the RPL protocol
    Shirafkan, Mohammad
    Shahidienjad, Ali
    Ghobaei-Arani, Mostafa
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2022, 15 (01) : 484 - 502
  • [26] An autonomous intrusion detection system for the RPL protocol
    Mohammad Shirafkan
    Ali Shahidienjad
    Mostafa Ghobaei-Arani
    Peer-to-Peer Networking and Applications, 2022, 15 : 484 - 502
  • [27] Implementation of a Stateful Network Protocol Intrusion Detection Systems
    Seng, S.
    Garcia-Alfaro, J.
    Laarouci, Y.
    SECRYPT : PROCEEDINGS OF THE 19TH INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY, 2022, : 398 - 405
  • [28] Anomaly-Based Intrusion Detection of Protocol-Aware Jamming
    Lichtman, Marc
    Reed, Jeffrey H.
    2015 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM 2015), 2015, : 269 - 274
  • [29] Research on Network Intrusion Detection System
    Xu, Jiang
    Cao, Zhongwei
    MICRO NANO DEVICES, STRUCTURE AND COMPUTING SYSTEMS, 2011, 159 : 77 - +
  • [30] Enhanced Network Intrusion Detection System
    Kotecha, Ketan
    Verma, Raghav
    Rao, Prahalad, V
    Prasad, Priyanshu
    Mishra, Vipul Kumar
    Badal, Tapas
    Jain, Divyansh
    Garg, Deepak
    Sharma, Shakti
    SENSORS, 2021, 21 (23)