Data Poisoning Attacks against Autoencoder-based Anomaly Detection Models: a Robustness Analysis

被引:8
|
作者
Bovenzi, Giampaolo [1 ]
Foggia, Alessio [1 ]
Santella, Salvatore [1 ]
Testa, Alessandro [1 ]
Persico, Valerio [1 ]
Pescape, Antonio [1 ]
机构
[1] Univ Napoli Federico II, Naples, Italy
关键词
D O I
10.1109/ICC45855.2022.9838942
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
The Internet of Things (IoT) is experiencing a strong growth in both industrial and consumer scenarios. At the same time, the devices taking part in delivering IoT services-usually characterized by limited hardware and software resources-are more and more targeted by cyberattacks. This calls for designing and evaluating new approaches for protecting IoT systems, which are challenged by the limited computational capabilities of devices and by the scarce availability of reliable datasets. In line with this need, in this paper we compare three state-of-the-art machine-learning models used for Anomaly Detection based on autoencoders, i.e. shallow Autoencoder, Deep Autoencoder (DAE), and Ensemble of Autoencoders (viz. KitNET). In addition, we evaluate the robustness of such solutions when Data Poisoning Attack (DPA) occurs, to assess the detection performance when the benign traffic used for learning the legitimate behavior of devices is mixed to malicious traffic. The evaluation relies on the public Kitsune Network Attack Dataset. Results reveal that the models do not differ in performance when trained with unpoisoned benign traffic, reaching (at 1% FPR) an F1 score of approximate to 97%. However, when DPA occurs, DAE proves to be the more robust in detection, showing more than 50% of F1 Score with 10% poisoning. Instead, the other models show strong performance drops (down to approximate to 20% F1 Score) by injecting only 0.5% of the malicious traffic.
引用
收藏
页码:5427 / 5432
页数:6
相关论文
共 50 条
  • [31] The Investigation of AutoEncoder-Based Neural Network for NMOS Circuit Anomaly Detection
    Feng, Ruirong
    Wang, Zhenfan
    Hu, Yun
    Xu, Yifan
    Wang, Haohan
    2024 9TH INTERNATIONAL CONFERENCE ON ELECTRONIC TECHNOLOGY AND INFORMATION SCIENCE, ICETIS 2024, 2024, : 216 - 220
  • [32] Fighting TLS Attacks: An Autoencoder-Based Model for Heartbleed Attack Detection
    Berbecaru, Diana Gratiela
    Giannuzzi, Stefano
    INTELLIGENT DISTRIBUTED COMPUTING XVI, IDC 2023, 2024, 1138 : 40 - 54
  • [33] Exploiting Autoencoder-Based Anomaly Detection to Enhance Cybersecurity in Power Grids
    Harrou, Fouzi
    Bouyeddou, Benamar
    Dairi, Abdelkader
    Sun, Ying
    FUTURE INTERNET, 2024, 16 (06)
  • [34] TAElog: A Novel Transformer AutoEncoder-Based Log Anomaly Detection Method
    Zhao, Changzhi
    Huang, Kezhen
    Wu, Di
    Han, Xueying
    Du, Dan
    Zhou, Yutian
    Lu, Zhigang
    Liu, Yuling
    INFORMATION SECURITY AND CRYPTOLOGY, INSCRYPT 2023, PT II, 2024, 14527 : 37 - 52
  • [35] AUTOENCODER-BASED ANOMALY DETECTION IN INDUSTRIAL X-RAY IMAGES
    Lindgren, Erik
    Zach, Christopher
    PROCEEDINGS OF 2021 48TH ANNUAL REVIEW OF PROGRESS IN QUANTITATIVE NONDESTRUCTIVE EVALUATION (QNDE2021), 2021,
  • [36] Automatically Estimate Clusters in Autoencoder-based Clustering Model for Anomaly Detection
    Van Quan Nguyen
    Viet Hung Nguyen
    Nhien-An Le Khac
    Van Loi Cao
    2021 RIVF INTERNATIONAL CONFERENCE ON COMPUTING AND COMMUNICATION TECHNOLOGIES (RIVF 2021), 2021, : 198 - 203
  • [37] Enhancing Anomaly Detection with Entropy Regularization in Autoencoder-based Lightweight Compression
    Enttsel, Andriy
    Marchioni, Alex
    Setti, Gianluca
    Mangia, Mauro
    Rovatti, Riccardo
    2024 IEEE 6TH INTERNATIONAL CONFERENCE ON AI CIRCUITS AND SYSTEMS, AICAS 2024, 2024, : 273 - 277
  • [38] Intrinsic Certified Robustness of Bagging against Data Poisoning Attacks
    Jia, Jinyuan
    Cao, Xiaoyu
    Gong, Neil Zhenqiang
    THIRTY-FIFTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, THIRTY-THIRD CONFERENCE ON INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE AND THE ELEVENTH SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2021, 35 : 7961 - 7969
  • [39] Data Poisoning Attacks against Autoregressive Models
    Alfeld, Scott
    Zhu, Xiaojin
    Barford, Paul
    THIRTIETH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, 2016, : 1452 - 1458
  • [40] Toward Transferable Adversarial Attacks Against Autoencoder-Based Network Intrusion Detectors
    Zhang, Yihang
    Wu, Yingwen
    Huang, Xiaolin
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2024, 20 (12) : 13863 - 13872