Towards Data-Driven Network Intrusion Detection Systems: Features Dimensionality Reduction and Machine Learning

被引:0
|
作者
Maabreh M. [1 ]
Obeidat I. [1 ]
Elsoud E.A. [2 ]
Alnajjai A. [2 ]
Alzyoud R. [2 ]
Darwish O. [3 ]
机构
[1] Department of Information Technology, Faculty of Prince Al-Hussein Bin Abdallah II for Information Technology, The Hashemite University, P.O. Box 330127, Zarqa
[2] Department of Computer Information Systems, Faculty of Prince Al-Hussein Bin Abdallah II for Information Technology, The Hashemite University, Zarqa
[3] Information Security and Applied Computing Department, Eastern Michigan University, MI
关键词
big data; deep learning; feature selection; intrusion detection; machine learning; network security;
D O I
10.3991/ijim.v16i14.30197
中图分类号
学科分类号
摘要
Cyber attacks have increased in tandem with the exponential expansion of computer networks and network applications throughout the world. Fortunately, various machine/deep learning models have demonstrated excellent accuracy in predicting network attacks in the literature; nonetheless, having simple and understandable models might be a big benefit in network monitoring systems. In this study, we evaluate four feature selection algorithms to find the minimal set of predictive features of network attacks, seven classical machine learning algorithms, and the deep learning algorithm on one million random instances of the CSE-CIC-IDS2018 big data set for network intrusions. The feature selection algorithms highlighted the importance of features related to forwarding direction (FWD) and two flow measures (FLOW) in predicting the binary traffic type; benign or attack. Furthermore, the results revealed that not all features are required to build efficient ML/DL in detecting network attacks, four features unanimously selected by the feature selection algorithms were enough to build comparable ML models to those trained on all features. This might lead to models that are more suitable for deployment in terms of complexity, explainability, and scalability. Moreover, by selecting four unanimity features instead of all traffic features, the training time may be decreased by 10% to 50%. © 2022. All Rights Reserved.
引用
收藏
页码:123 / 135
页数:12
相关论文
共 50 条
  • [21] A hybrid machine learning model for intrusion detection in wireless sensor networks leveraging data balancing and dimensionality reduction
    Talukder, Md. Alamin
    Khalid, Majdi
    Sultana, Nasrin
    SCIENTIFIC REPORTS, 2025, 15 (01):
  • [22] Efficient Network Intrusion Detection Using PCA-Based Dimensionality Reduction of Features
    Abdulhammed, Razan
    Faezipour, Miad
    Musafer, Hassan
    Abuzneid, Abdelshakour
    2019 INTERNATIONAL SYMPOSIUM ON NETWORKS, COMPUTERS AND COMMUNICATIONS (ISNCC 2019), 2019,
  • [23] Intrusion Detection in secure network for Cybersecurity systems using Machine Learning and Data Mining
    Azwar, Hassan
    Murtaz, Muhammad
    Siddique, Mehwish
    Rehman, Saad
    2018 5TH IEEE INTERNATIONAL CONFERENCE ON ENGINEERING TECHNOLOGIES AND APPLIED SCIENCES (IEEE ICETAS), 2018,
  • [24] Towards a Reliable Comparison and Evaluation of Network Intrusion Detection Systems Based on Machine Learning Approaches
    Magan-Carrion, Roberto
    Urda, Daniel
    Diaz-Cano, Ignacio
    Dorronsoro, Bernabe
    APPLIED SCIENCES-BASEL, 2020, 10 (05):
  • [25] Towards a Better Understanding of Machine Learning based Network Intrusion Detection Systems in Industrial Networks
    Borcherding, Anne
    Feldmann, Lukas
    Karch, Markus
    Meshram, Ankush
    Beyerer, Juergen
    PROCEEDINGS OF THE 8TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY (ICISSP), 2021, : 314 - 325
  • [26] Amalgams: data-driven amalgamation for the dimensionality reduction of compositional data
    Quinn, Thomas P.
    Erb, Ionas
    NAR GENOMICS AND BIOINFORMATICS, 2020, 2 (04)
  • [27] Advancing Network Intrusion Detection Systems with Machine Learning Techniques
    Benmalek, Mourad
    Haouam, Kamel-Dine
    ADVANCES IN ARTIFICIAL INTELLIGENCE AND MACHINE LEARNING, 2024, 4 (03): : 2575 - 2592
  • [28] Towards Quantum-Enhanced Machine Learning for Network Intrusion Detection
    Gouveia, Arnaldo
    Correia, Miguel
    2020 IEEE 19TH INTERNATIONAL SYMPOSIUM ON NETWORK COMPUTING AND APPLICATIONS (NCA), 2020,
  • [29] Data-Driven Intrusion Detection for Ambient Intelligence
    Chatzigiannakis, Ioannis
    Maiano, Luca
    Trakadas, Panagiotis
    Anagnostopoulos, Aris
    Bacci, Federico
    Karkazis, Panagiotis
    Spirakis, Paul G.
    Zahariadis, Theodore
    AMBIENT INTELLIGENCE (AMI 2019), 2019, 11912 : 235 - 251
  • [30] Poisoning Attacks and Data Sanitization Mitigations for Machine Learning Models in Network Intrusion Detection Systems
    Venkatesan, Sridhar
    Sikka, Harshvardhan
    Izmailov, Rauf
    Chadha, Ritu
    Oprea, Alina
    de Lucia, Michael J.
    2021 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM 2021), 2021,