A topological data analysis approach for detecting data poisoning attacks against machine learning based network intrusion detection systems

被引:0
|
作者
Monkam, Galamo F. [1 ]
De Lucia, Michael J. [2 ]
Bastian, Nathaniel D. [1 ]
机构
[1] US Mil Acad, Army Cyber Inst, Dept Elect Engn & Comp Sci, West Point, NY 10996 USA
[2] US Army Combat Capabil Dev Command, US Army Res Lab, Aberdeen Proving Ground, MD 21005 USA
关键词
Machine learning security; Data poisoning detection; Topological data analysis; Unsupervised learning; Network security; SECURITY;
D O I
10.1016/j.cose.2024.103929
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Data poisoning attacks pose a significant security risk to network security software that utilizes machine learning (ML) for network intrusion detection. As network traffic continues to surge, ML becomes indispensable in detecting and characterizing malicious actors attempting to infiltrate computer networks. However, conventional ML assumes a benign environment, leaving room for adversaries to violate this assumption during the training phase. Detecting data poisoning attacks proves to be a challenging task, as attackers employ subtle alterations in the training data to create backdoors, trojans or triggers. Traditional techniques for addressing data poisoning attacks often focus only on enhancing ML model robustness rather than detecting poisoned data, necessitating the development of novel, more effective approaches. Hence, there is an urgent need to develop new methods for identifying poisoned data, ensuring the security of ML. We introduce a novel approach that harnesses the power of topological data analysis and unsupervised learning, enabling the early identification of poisoned data before training an ML model for network intrusion detection. Leveraging our approach, the extraction of topological features and subsequent application of clustering techniques leads to the creation of new clusters exclusively composed of poisoned data for removal prior to ML model training.
引用
收藏
页数:18
相关论文
共 50 条
  • [21] Machine learning based intrusion detection framework for detecting security attacks in internet of things
    Kantharaju, V.
    Suresh, H.
    Niranjanamurthy, M.
    Ansarullah, Syed Immamul
    Amin, Farhan
    Alabrah, Amerah
    SCIENTIFIC REPORTS, 2024, 14 (01):
  • [22] Dependable federated learning for IoT intrusion detection against poisoning attacks
    Yang, Run
    He, Hui
    Wang, Yulong
    Qu, Yue
    Zhang, Weizhe
    COMPUTERS & SECURITY, 2023, 132
  • [23] Adversarial Attacks on Network Intrusion Detection Systems Based on Federated Learning
    Yang, Ziyuan
    Qu, Haipeng
    Hua, Ying
    Zhang, Xiaoshuai
    Lin, Xijun
    ADVANCED INTELLIGENT COMPUTING TECHNOLOGY AND APPLICATIONS, PT IX, ICIC 2024, 2024, 14870 : 146 - 157
  • [24] Data Processing and Model Selection for Machine Learning-based Network Intrusion Detection
    Sahu, Abhijeet
    Mao, Zeyu
    Davis, Katherine
    Goulart, Ana E.
    2020 IEEE INTERNATIONAL WORKSHOP TECHNICAL COMMITTEE ON COMMUNICATIONS QUALITY AND RELIABILITY (CQR), 2020, : 49 - 54
  • [25] Dataset of attacks on a live enterprise VoIP network for machine learning based intrusion detection and prevention systems
    Alvares, Christabelle
    Dinesh, Dristi
    Alvi, Syed
    Gautam, Tannish
    Hasib, Maheen
    Raza, Ali
    COMPUTER NETWORKS, 2021, 197
  • [26] Ensemble-Based Online Machine Learning Algorithms for Network Intrusion Detection Systems Using Streaming Data
    Martindale, Nathan
    Ismail, Muhammad
    Talbert, Douglas A.
    INFORMATION, 2020, 11 (06)
  • [27] Adversarial Machine Learning Attacks against Intrusion Detection Systems: A Survey on Strategies and Defense
    Alotaibi, Afnan
    Rassam, Murad A.
    FUTURE INTERNET, 2023, 15 (02)
  • [28] A Sampling-Based Method for Detecting Data Poisoning Attacks in Recommendation Systems
    Li, Mohan
    Lian, Yuxin
    Zhu, Jinpeng
    Lin, Jingyi
    Wan, Jiawen
    Sun, Yanbin
    MATHEMATICS, 2024, 12 (02)
  • [29] Data Driven Network Monitoring and Intrusion Detection using Machine Learning
    Williams, Brandon
    Dong, Xishuang
    Qian, Lijun
    2020 SEVENTH INTERNATIONAL CONFERENCE ON SOCIAL NETWORK ANALYSIS, MANAGEMENT AND SECURITY (SNAMS), 2020, : 262 - 268
  • [30] Unsupervised Machine Learning Techniques for Network Intrusion Detection on Modern Data
    Verkerken, Miel
    D'hooge, Laurens
    Wauters, Tim
    Volckaert, Bruno
    De Turck, Filip
    2020 FOURTH CYBER SECURITY IN NETWORKING CONFERENCE (CSNET), 2020,