Synthetic attack data generation model applying generative adversarial network for intrusion detection

被引:33
|
作者
Kumar, Vikash [1 ,2 ]
Sinha, Ditipriya [2 ]
机构
[1] Siksha O Anusandhan Deemed be Univ, Dept Comp Sci & Engn, Bhubaneswar, India
[2] Natl Inst Technol Patna, Dept Comp Sci & Engn, Patna, Bihar, India
关键词
Intrusion detection system; Cyber-attack; Generative adversarial networks; Data synthetization; Data imbalance; DEEP LEARNING APPROACH; INTERNET;
D O I
10.1016/j.cose.2022.103054
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Detecting a large number of attack classes accurately applying machine learning (ML) and deep learn-ing (DL) techniques depends on the number of representative samples available for each attack class. In most cases, the data samples are highly imbalanced that results in a biased intrusion detection model towards the majority classes. Under-sampling, over-sampling and SMOTE are some techniques among the solutions that turn the imbalanced dataset to balanced one. These techniques have not had much impact on the improvement of detection accuracy. To deal with this problem, this paper proposes a Wasser-stein Conditional Generative Adversarial Network (WCGAN) combined with an XGBoost Classifier. Gra-dient penalty along with the WCGAN is used for stable learning of the model. The proposed model is evaluated with some other GAN models (i.e., standard/vanilla GAN, Conditional GAN) which shows the significance of applying WCGAN in this paper. The loss on generated and real data shows a similar pat-tern and is lower for the Wasserstein variants of GAN compared to the other variants of the GAN model. The performance is benchmarked on three datasets NSL-KDD, UNSW-NB15 and BoT-IoT. The comparison of performance metrics before and after using the proposed framework with XGBoost classifier shows im-provement in terms of higher precision, recall and F-1 score. However, comparatively less improvement is observed in FAR compared to other classifiers such as Random Forest (RF), Decision Tree (DT), Support Vector Machine (SVM). The proposed work is also compared with a recent similar technique called DGM, which uses conditional GAN along with different ML classification models. The performance of the pro-posed model outperforms DGM. The proposed model creates a significant footprint (or, attack signatures) to tackle with the problem of data-imbalance during the design of the Intrusion Detection System (IDS).(c) 2022 Elsevier Ltd. All rights reserved.
引用
收藏
页数:15
相关论文
共 50 条
  • [21] A New Data-Balancing Approach Based on Generative Adversarial Network for Network Intrusion Detection System
    Jamoos, Mohammad
    Mora, Antonio M.
    AlKhanafseh, Mohammad
    Surakhi, Ola
    ELECTRONICS, 2023, 12 (13)
  • [22] A Wasserstein Generative Adversarial Network-Gradient Penalty-Based Model with Imbalanced Data Enhancement for Network Intrusion Detection
    Lee, Gwo-Chuan
    Li, Jyun-Hong
    Li, Zi-Yang
    APPLIED SCIENCES-BASEL, 2023, 13 (14):
  • [23] Synthetic Image Generation for Gastritis Detection Based on Auxiliary Classifier Generative Adversarial Network
    Kanai, Misaki
    Togo, Ren
    Ogawa, Takahiro
    Haseyama, Miki
    2019 IEEE INTERNATIONAL SYMPOSIUM ON CIRCUITS AND SYSTEMS (ISCAS), 2019,
  • [24] PANDA: Practical Adversarial Attack Against Network Intrusion Detection
    Swain, Subrat Kumar
    Kumar, Vireshwar
    Bai, Guangdong
    Kim, Dan Dongseong
    2024 54TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS-SUPPLEMENTAL VOLUME, DSN-S 2024, 2024, : 28 - 32
  • [25] A Data Generation Method for Electricity Theft Detection Using Generative Adversarial Network
    Wang D.
    Yang K.
    Yang, Kaihua (244920742@qq.com), 1600, Power System Technology Press (44): : 775 - 782
  • [26] A Comparison Study of Generative Adversarial Network Architectures for Malicious Cyber-Attack Data Generation
    Peppes, Nikolaos
    Alexakis, Theodoros
    Demestichas, Konstantinos
    Adamopoulou, Evgenia
    APPLIED SCIENCES-BASEL, 2023, 13 (12):
  • [27] Synthetic Data Generation With Machine Learning for Network Intrusion Detection Systems
    Newlin, Marvin
    Reith, Mark
    DeYoung, Mark
    PROCEEDINGS OF THE 18TH EUROPEAN CONFERENCE ON CYBER WARFARE AND SECURITY (ECCWS 2019), 2019, : 785 - 789
  • [28] Generative Adversarial Networks For Launching and Thwarting Adversarial Attacks on Network Intrusion Detection Systems
    Usama, Muhammad
    Asim, Muhammad
    Latif, Siddique
    Qadir, Junaid
    Ala-Al-Fuqaha
    2019 15TH INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE (IWCMC), 2019, : 78 - 83
  • [29] Enhancing Intrusion Detection through Deep Learning and Generative Adversarial Network
    Rahman, Md Habibur
    Martinez, Leo, III
    Mishra, Avdesh
    Nijim, Mais
    Goyal, Ayush
    Hicks, David
    4TH INTERDISCIPLINARY CONFERENCE ON ELECTRICS AND COMPUTER, INTCEC 2024, 2024,
  • [30] A Quantum Generative Adversarial Network-based Intrusion Detection System
    Rahman, Md Abdur
    Shahriar, Hossain
    Clincy, Victor
    Hossain, Md Faruque
    Rahman, Muhammad
    2023 IEEE 47TH ANNUAL COMPUTERS, SOFTWARE, AND APPLICATIONS CONFERENCE, COMPSAC, 2023, : 1810 - 1815