Towards realistic problem-space adversarial attacks against machine learning in network intrusion detection

被引:0
|
作者
Catillo, Marta [1 ]
Pecchia, Antonio [1 ]
Repola, Antonio [1 ]
Villano, Umberto [1 ]
机构
[1] Univ Sannio, Benevento, Italy
关键词
intrusion detection; machine learning; adversarial examples; supervised learning; Denial of Service; DETECTION SYSTEMS; ROBUSTNESS;
D O I
10.1145/3664476.3669974
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Current trends in network intrusion detection systems (NIDS) capitalize on the extraction of features from network traffic and the use of up-to-date machine and deep learning techniques to infer a detection model; in consequence, NIDS can be vulnerable to adversarial attacks. Differently from the plethora of contributions that apply (and misuse) feature-level attacks envisioned in application domains far from NIDS, this paper proposes a novel approach to adversarial attacks, which consists in a realistic problem-space perturbation of the network traffic. The perturbation is achieved through a traffic control utility. Experiments are based on normal and Denial of Service traffic in both legitimate and adversarial conditions, and the application of four popular techniques to learn the NIDS models. The results highlight the transferability of the adversarial examples generated by the proposed problem-space attack as well as the effectiveness at inducing traffic misclassifications across the NIDS models obtained.
引用
收藏
页数:8
相关论文
共 50 条
  • [41] Adversarial Examples Against the Deep Learning Based Network Intrusion Detection Systems
    Yang, Kaichen
    Liu, Jianqing
    Zhang, Chi
    Fang, Yuguang
    2018 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM 2018), 2018, : 559 - 564
  • [42] Towards Quantum-Enhanced Machine Learning for Network Intrusion Detection
    Gouveia, Arnaldo
    Correia, Miguel
    2020 IEEE 19TH INTERNATIONAL SYMPOSIUM ON NETWORK COMPUTING AND APPLICATIONS (NCA), 2020,
  • [43] Hierarchical Adversarial Attacks Against Graph-Neural-Network-Based IoT Network Intrusion Detection System
    Zhou, Xiaokang
    Liang, Wei
    Li, Weimin
    Yan, Ke
    Shimizu, Shohei
    Wang, Kevin I-Kai
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (12) : 9310 - 9319
  • [44] Def-IDS: An Ensemble Defense Mechanism Against Adversarial Attacks for Deep Learning-based Network Intrusion Detection
    Wang, Jianyu
    Pan, Jianli
    AlQerm, Ismail
    Liu, Yuanni
    30TH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS (ICCCN 2021), 2021,
  • [45] DReLAB - Deep REinforcement Learning Adversarial Botnet: A benchmark dataset for adversarial attacks against botnet Intrusion Detection Systems
    Venturi, Andrea
    Apruzzese, Giovanni
    Andreolini, Mauro
    Colajanni, Michele
    Marchetti, Mirco
    DATA IN BRIEF, 2021, 34
  • [46] Adaptative Perturbation Patterns: Realistic Adversarial Learning for Robust Intrusion Detection
    Vitorino, Joao
    Oliveira, Nuno
    Praca, Isabel
    FUTURE INTERNET, 2022, 14 (04)
  • [47] ROLDEF: RObust Layered DEFense for Intrusion Detection Against Adversarial Attacks
    Gungor, Onat
    Rosing, Tajana
    Alcsanli, Bans
    2024 DESIGN, AUTOMATION & TEST IN EUROPE CONFERENCE & EXHIBITION, DATE, 2024,
  • [48] Generative Adversarial Networks For Launching and Thwarting Adversarial Attacks on Network Intrusion Detection Systems
    Usama, Muhammad
    Asim, Muhammad
    Latif, Siddique
    Qadir, Junaid
    Ala-Al-Fuqaha
    2019 15TH INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE (IWCMC), 2019, : 78 - 83
  • [49] Adversarial Attacks on Network Intrusion Detection Systems Using Flow Containers
    Liu, Tzong-Jye
    COMPUTER JOURNAL, 2024, 67 (02): : 728 - 745
  • [50] A Framework for Generating Evasion Attacks for Machine Learning Based Network Intrusion Detection Systems
    Mogg, Raymond
    Enoch, Simon Yusuf
    Kim, Dong Seong
    INFORMATION SECURITY APPLICATIONS, 2021, 13009 : 51 - 63