Network intrusion detection based on n-gram frequency and time-aware transformer

被引:19
|
作者
Han, Xueying [1 ,2 ]
Cui, Susu [1 ,2 ]
Liu, Song [1 ,2 ]
Zhang, Chen [1 ,2 ]
Jiang, Bo [1 ,2 ]
Lu, Zhigang [1 ,2 ]
机构
[1] Chinese Acad Sci, Inst Informat Engn, Beijing, Peoples R China
[2] Univ Chinese Acad Sci, Sch Cyber Secur, Beijing, Peoples R China
关键词
Intrusion detection; Deep learning; Transformer; N; -Gram;
D O I
10.1016/j.cose.2023.103171
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Network intrusion detection system plays a critical role in protecting the target network from attacks. However, most existing detection methods cannot fully utilize the information contained in raw network traffic, such as information loss in the feature extraction process and incomplete feature dimensions, which lead to performance bottlenecks. In this paper, we propose a novel intrusion detection model based on n-gram frequency and time-aware transformer called GTID. GTID can learn traffic features from packet-level and session-level hierarchically and can minimize information as much as possible. To ex-tract packet-level features effectively, GTID considers the different roles of packet header and payload, and processes them in different ways, where n-gram frequency is used to represent payload contextual information because of its conciseness. Then, GTID uses the proposed time-aware transformer to learn session-level features for intrusion detection. The time-aware transformer considers the time intervals between packets, and learns the temporal features of a session for classification. For evaluation, several solid experiments are conducted on the ISCX2012 dataset and the CICIDS2017 dataset, and the results show the effectiveness and robustness of GTID.(c) 2023 Elsevier Ltd. All rights reserved.
引用
收藏
页数:15
相关论文
共 50 条
  • [31] A Time-Aware Graph Neural Network for Session-Based Recommendation
    Guo, Yupu
    Ling, Yanxiang
    Chen, Honghui
    IEEE ACCESS, 2020, 8 : 167371 - 167382
  • [32] A Real Time Anomaly Detection Method Based on Variable N-Gram for Flight Data<bold> </bold>
    Liu, Yanfang
    Lv, Jianghua
    Ma, Shilong
    IEEE 20TH INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE COMPUTING AND COMMUNICATIONS / IEEE 16TH INTERNATIONAL CONFERENCE ON SMART CITY / IEEE 4TH INTERNATIONAL CONFERENCE ON DATA SCIENCE AND SYSTEMS (HPCC/SMARTCITY/DSS), 2018, : 370 - 376
  • [33] Session-Based Recommendation with GNN and Time-Aware Memory Network
    Wen, Yan
    Kang, Shitao
    Zeng, Qingtian
    Duan, Hua
    Chen, Xin
    Li, Wenkai
    MOBILE INFORMATION SYSTEMS, 2022, 2022
  • [34] Session-based recommendation with time-aware neural attention network
    Wang, Ruiqin
    Lou, Jungang
    Jiang, Yunliang
    EXPERT SYSTEMS WITH APPLICATIONS, 2022, 210
  • [35] Network intrusion detection method based on matrix factorization of their time and frequency representations
    Chountasis, Spiros
    Pappas, Dimitrios
    Sklavounos, Dimitris
    ETRI JOURNAL, 2021, 43 (01) : 152 - 162
  • [36] STEAL: Service Time-Aware Load Balancer on Many-Core Processors for Fast Intrusion Detection
    Choi, Yoon-Ho
    Park, WooJin
    Choi, SeokHwan
    Seo, Seung-Woo
    2016 IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (INFOCOM WKSHPS), 2016,
  • [37] DDoS Detection on Network Protocol Using Cosine Similarity and N-Gram plus Method
    Maslan, Andi
    Mohammad, Kamaruddin Malik
    Arnomo, Sasa Ani
    PROCEEDINGS OF 2018 3RD INTERNATIONAL CONFERENCE ON SUSTAINABLE INFORMATION ENGINEERING AND TECHNOLOGY (SIET 2018), 2018, : 234 - 239
  • [38] Ab-HIDS: An anomaly-based host intrusion detection system using frequency of N-gram system call features and ensemble learning for containerized environment
    Joraviya, Nidhi
    Gohil, Bhavesh N.
    Rao, Udai Pratap
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024, 36 (23):
  • [39] Byte Level n-Gram Analysis for Malware Detection
    Jain, Sacbin
    Meena, Yogesb Kumar
    COMPUTER NETWORKS AND INTELLIGENT COMPUTING, 2011, 157 : 51 - 59
  • [40] N-Gram FST Indexing for Spoken Term Detection
    Liu, Chao
    Wang, Dong
    Tejedor, Javier
    13TH ANNUAL CONFERENCE OF THE INTERNATIONAL SPEECH COMMUNICATION ASSOCIATION 2012 (INTERSPEECH 2012), VOLS 1-3, 2012, : 2091 - 2094