Towards Data-Driven Network Intrusion Detection Systems: Features Dimensionality Reduction and Machine Learning

被引:0
|
作者
Maabreh M. [1 ]
Obeidat I. [1 ]
Elsoud E.A. [2 ]
Alnajjai A. [2 ]
Alzyoud R. [2 ]
Darwish O. [3 ]
机构
[1] Department of Information Technology, Faculty of Prince Al-Hussein Bin Abdallah II for Information Technology, The Hashemite University, P.O. Box 330127, Zarqa
[2] Department of Computer Information Systems, Faculty of Prince Al-Hussein Bin Abdallah II for Information Technology, The Hashemite University, Zarqa
[3] Information Security and Applied Computing Department, Eastern Michigan University, MI
关键词
big data; deep learning; feature selection; intrusion detection; machine learning; network security;
D O I
10.3991/ijim.v16i14.30197
中图分类号
学科分类号
摘要
Cyber attacks have increased in tandem with the exponential expansion of computer networks and network applications throughout the world. Fortunately, various machine/deep learning models have demonstrated excellent accuracy in predicting network attacks in the literature; nonetheless, having simple and understandable models might be a big benefit in network monitoring systems. In this study, we evaluate four feature selection algorithms to find the minimal set of predictive features of network attacks, seven classical machine learning algorithms, and the deep learning algorithm on one million random instances of the CSE-CIC-IDS2018 big data set for network intrusions. The feature selection algorithms highlighted the importance of features related to forwarding direction (FWD) and two flow measures (FLOW) in predicting the binary traffic type; benign or attack. Furthermore, the results revealed that not all features are required to build efficient ML/DL in detecting network attacks, four features unanimously selected by the feature selection algorithms were enough to build comparable ML models to those trained on all features. This might lead to models that are more suitable for deployment in terms of complexity, explainability, and scalability. Moreover, by selecting four unanimity features instead of all traffic features, the training time may be decreased by 10% to 50%. © 2022. All Rights Reserved.
引用
收藏
页码:123 / 135
页数:12
相关论文
共 50 条
  • [1] Features Dimensionality Reduction Approaches for Machine Learning Based Network Intrusion Detection
    Abdulhammed, Razan
    Musafer, Hassan
    Alessa, Ali
    Faezipour, Miad
    Abuzneid, Abdelshakour
    ELECTRONICS, 2019, 8 (03)
  • [2] A Survey on Data-Driven Learning for Intelligent Network Intrusion Detection Systems
    Abdelmoumin, Ghada
    Whitaker, Jessica
    Rawat, Danda B.
    Rahman, Abdul
    ELECTRONICS, 2022, 11 (02)
  • [3] Learning to Detect: A Data-driven Approach for Network Intrusion Detection
    Tauscher, Zachary
    Jiang, Yushan
    Zhang, Kai
    Wang, Jian
    Song, Houbing
    2021 IEEE INTERNATIONAL PERFORMANCE, COMPUTING, AND COMMUNICATIONS CONFERENCE (IPCCC), 2021,
  • [4] Dimensionality Reduction and Visualization of Network Intrusion Detection Data
    Zong, Wei
    Chow, Yang-Wai
    Susilo, Willy
    INFORMATION SECURITY AND PRIVACY, ACISP 2019, 2019, 11547 : 441 - 455
  • [5] A Survey on Data-driven Network Intrusion Detection
    Chou, Dylan
    Jiang, Meng
    ACM COMPUTING SURVEYS, 2022, 54 (09)
  • [6] IoT Bonet and Network Intrusion Detection using Dimensionality Reduction and Supervised Machine Learning
    Desai, Madhuri Gurunathrao
    Shi, Yong
    Suo, Kun
    2020 11TH IEEE ANNUAL UBIQUITOUS COMPUTING, ELECTRONICS & MOBILE COMMUNICATION CONFERENCE (UEMCON), 2020, : 316 - 322
  • [7] NETWORK INTRUSION DETECTION SYSTEMS USING SUPERVISED MACHINE LEARNING CLASSIFICATION AND DIMENSIONALITY REDUCTION TECHNIQUES: A SYSTEMATIC REVIEW
    Ashi, Zein
    Aburashed, Laila
    Al-Qudah, Mahmoud
    Qusef, Abdallah
    JORDANIAN JOURNAL OF COMPUTERS AND INFORMATION TECHNOLOGY, 2021, 7 (04): : 373 - 390
  • [8] Impact of Features Reduction on Machine Learning Based Intrusion Detection Systems
    Fatima, Masooma
    Rehman, Osama
    Rahman, Ibrahim M. H.
    EAI ENDORSED TRANSACTIONS ON SCALABLE INFORMATION SYSTEMS, 2022, 9 (06)
  • [9] Data Driven Network Monitoring and Intrusion Detection using Machine Learning
    Williams, Brandon
    Dong, Xishuang
    Qian, Lijun
    2020 SEVENTH INTERNATIONAL CONFERENCE ON SOCIAL NETWORK ANALYSIS, MANAGEMENT AND SECURITY (SNAMS), 2020, : 262 - 268
  • [10] Synthetic Data Generation With Machine Learning for Network Intrusion Detection Systems
    Newlin, Marvin
    Reith, Mark
    DeYoung, Mark
    PROCEEDINGS OF THE 18TH EUROPEAN CONFERENCE ON CYBER WARFARE AND SECURITY (ECCWS 2019), 2019, : 785 - 789