Protocol Aware Unsupervised Network Intrusion Detection System

被引:0
|
作者
Ratti, Ritesh [1 ]
Singh, Sanasam Ranbir [1 ]
Nandi, Sukumar [1 ]
机构
[1] Indian Inst Technol, Dept Comp Sci & Engn, Gauhati 781039, Assam, India
关键词
Intrusion Detection System; Unsupervised Machine Learning; Anomaly Detection; Autoencoder network;
D O I
10.1109/TrustCom60117.2023.00208
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
In recent years the number of attacks on computer networks has increased exponentially due to the easy availability of sophisticated tools and attack techniques. These attacks are possible due to existing vulnerabilities in networking protocols. Most of the machine learning based intrusion detection systems proposed earlier, to mitigate these attacks, consider training a model for the group of attacks, which doesn't consider protocol-specific properties into account and is biased toward attacks where most of the data is available. In this paper, we propose protocol aware unsupervised method based on an autoencoder-based learning approach to detect the attack in network flows by training the model using only normal traffic and using reconstruction error as the parameter to classify the attack event. Our proposed method is based on building protocol aware model by combining individual protocol-specific encoders and learning the protocol channel importance using attention mechanism. We perform various experiments on different recent datasets like CICDDoS2019, and CICIDS2018, and experimental results show that the proposed protocol aware model performs better than the non-protocol aware method.
引用
收藏
页码:1524 / 1531
页数:8
相关论文
共 50 条
  • [41] Towards Understanding Alerts raised by Unsupervised Network Intrusion Detection Systems
    Lanvin, Maxime
    Gimenez, Pierre-Francois
    Han, Yufei
    Majorczyk, Frederic
    Me, Ludovic
    Totel, Eric
    PROCEEDINGS OF THE 26TH INTERNATIONAL SYMPOSIUM ON RESEARCH IN ATTACKS, INTRUSIONS AND DEFENSES, RAID 2023, 2023, : 135 - 150
  • [42] An Energy Aware Trust Based Intrusion Detection System with Adaptive Acknowledgement for Wireless Sensor Network
    Rajeshkumar, G.
    Valluvan, K. R.
    WIRELESS PERSONAL COMMUNICATIONS, 2017, 94 (04) : 1993 - 2007
  • [43] Unsupervised Network Intrusion Detection Systems: Detecting the Unknown without Knowledge
    Casas, Pedro
    Mazel, Johan
    Owezarski, Philippe
    COMPUTER COMMUNICATIONS, 2012, 35 (07) : 772 - 783
  • [44] Unsupervised Machine Learning Techniques for Network Intrusion Detection on Modern Data
    Verkerken, Miel
    D'hooge, Laurens
    Wauters, Tim
    Volckaert, Bruno
    De Turck, Filip
    2020 FOURTH CYBER SECURITY IN NETWORKING CONFERENCE (CSNET), 2020,
  • [45] Genos: General In-Network Unsupervised Intrusion Detection by Rule Extraction
    Li, Ruoyu
    Li, Qing
    Zhang, Yu
    Zhao, Dan
    Xiao, Xi
    Jiang, Yong
    IEEE INFOCOM 2024-IEEE CONFERENCE ON COMPUTER COMMUNICATIONS, 2024, : 561 - 570
  • [46] Network processor based network intrusion detection system
    Cho, H
    Kim, D
    Kim, J
    Doh, Y
    Jang, J
    INFORMATION NETWORKING: NETWORKING TECHNOLOGIES FOR BROADBAND AND MOBILE NETWORKS, 2004, 3090 : 973 - 982
  • [47] An intrusion detection system integrating network-level intrusion detection and host-level intrusion detection
    Liu, Jiannan
    Xiao, Kun
    Luo, Lei
    Li, Yun
    Chen, Lirong
    2020 IEEE 20TH INTERNATIONAL CONFERENCE ON SOFTWARE QUALITY, RELIABILITY, AND SECURITY (QRS 2020), 2020, : 122 - 129
  • [48] Protocol based foresight anomaly intrusion detection system
    Tsai, MK
    Lin, SC
    Tseng, SS
    37TH ANNUAL 2003 INTERNATIONAL CARNAHAN CONFERENCE ON SECURITY TECHNOLOGY, PROCEEDINGS, 2003, : 493 - 500
  • [49] Stochastic protocol modeling for anomaly based network intrusion detection
    Estevez-Tapiador, JM
    Garcia-Teodoro, P
    Diaz-Verdejo, JE
    IWIA 2003: FIRST IEEE INTERNATIONAL WORKSHOP ON INFORMATION ASSURANCE, PROCEEDINGS, 2003, : 3 - 12
  • [50] CopyCAN: An Error-Handling Protocol based Intrusion Detection System for Controller Area Network
    Longari, Stefano
    Penco, Matteo
    Carminati, Michele
    Zanero, Stefano
    CPS-SPC'19: PROCEEDINGS OF THE ACM WORKSHOP ON CYBER-PHYSICAL SYSTEMS SECURITY & PRIVACY, 2019, : 39 - 50