Data Poisoning Attacks against Autoencoder-based Anomaly Detection Models: a Robustness Analysis

被引:8
|
作者
Bovenzi, Giampaolo [1 ]
Foggia, Alessio [1 ]
Santella, Salvatore [1 ]
Testa, Alessandro [1 ]
Persico, Valerio [1 ]
Pescape, Antonio [1 ]
机构
[1] Univ Napoli Federico II, Naples, Italy
关键词
D O I
10.1109/ICC45855.2022.9838942
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
The Internet of Things (IoT) is experiencing a strong growth in both industrial and consumer scenarios. At the same time, the devices taking part in delivering IoT services-usually characterized by limited hardware and software resources-are more and more targeted by cyberattacks. This calls for designing and evaluating new approaches for protecting IoT systems, which are challenged by the limited computational capabilities of devices and by the scarce availability of reliable datasets. In line with this need, in this paper we compare three state-of-the-art machine-learning models used for Anomaly Detection based on autoencoders, i.e. shallow Autoencoder, Deep Autoencoder (DAE), and Ensemble of Autoencoders (viz. KitNET). In addition, we evaluate the robustness of such solutions when Data Poisoning Attack (DPA) occurs, to assess the detection performance when the benign traffic used for learning the legitimate behavior of devices is mixed to malicious traffic. The evaluation relies on the public Kitsune Network Attack Dataset. Results reveal that the models do not differ in performance when trained with unpoisoned benign traffic, reaching (at 1% FPR) an F1 score of approximate to 97%. However, when DPA occurs, DAE proves to be the more robust in detection, showing more than 50% of F1 Score with 10% poisoning. Instead, the other models show strong performance drops (down to approximate to 20% F1 Score) by injecting only 0.5% of the malicious traffic.
引用
收藏
页码:5427 / 5432
页数:6
相关论文
共 50 条
  • [21] Variational AutoEncoder-Based Anomaly Detection Scheme for Load Forecasting
    Park, Sungwoo
    Jung, Seungmin
    Hwang, Eenjun
    Rho, Seungmin
    ADVANCES IN ARTIFICIAL INTELLIGENCE AND APPLIED COGNITIVE COMPUTING, 2021, : 833 - 839
  • [22] Autoencoder-based Data Augmentation for Deepfake Detection
    Stanciu, Dan-Cristian
    Ionescu, Bogdan
    PROCEEDINGS OF THE 2ND ACM INTERNATIONAL WORKSHOP ON MULTIMEDIA AI AGAINST DISCRIMINATION, MAD 2023, 2023, : 19 - 27
  • [23] Fed-LSAE: Thwarting poisoning attacks against federated cyber threat detection system via Autoencoder-based latent space inspection
    Luong, Tran Duc
    Tien, Vuong Minh
    Quyen, Nguyen Huu
    Hien, Do Thi Thu
    Duy, Phan The
    Pham, Van-Hau
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2024, 87
  • [24] Autoencoder-based anomaly root cause analysis for wind turbines
    Roelofs C.M.A.
    Lutz M.-A.
    Faulstich S.
    Vogt S.
    Energy and AI, 2021, 4
  • [26] Autoencoder-based Condition Monitoring and Anomaly Detection Method for Rotating Machines
    Ahmad, Sabtain
    Styp-Rekowski, Kevin
    Nedelkoski, Sasho
    Kao, Odej
    2020 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2020, : 4093 - 4102
  • [27] Transfer learning applications for autoencoder-based anomaly detection in wind turbines
    Roelofs, Cyriana M. A.
    Gueck, Christian
    Faulstich, Stefan
    ENERGY AND AI, 2024, 17
  • [28] An improved autoencoder-based approach for anomaly detection in industrial control systems
    Aslam, Muhammad Muzamil
    Tufail, Ali
    De Silva, Liyanage Chandratilak
    Haji Mohd Apong, Rosyzie Anna Awg
    Namoun, Abdallah
    SYSTEMS SCIENCE & CONTROL ENGINEERING, 2024, 12 (01)
  • [29] An Approach for Poisoning Attacks against RNN-Based Cyber Anomaly Detection
    Xu, Jinghui
    Wen, Yu
    Yang, Chun
    Meng, Dan
    2020 IEEE 19TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM 2020), 2020, : 1680 - 1687
  • [30] Detection of Attacks in Network Traffic with the Autoencoder-Based Unsupervised Learning Method
    Ozkan, Yalcin
    ACTA INFOLOGICA, 2022, 6 (02):