A Scalable and Hybrid Intrusion Detection System Based on the Convolutional-LSTM Network

被引:89
|
作者
Khan, Muhammad Ashfaq [1 ]
Karim, Md. Rezaul [2 ,3 ]
Kim, Yangwoo [1 ]
机构
[1] Dongguk Univ, Dept Informat & Commun Engn, 30 Pildong Ro 1 Gil, Seoul 100715, South Korea
[2] Fraunhofer Inst Appl Informat Technol FIT, D-53754 St Augustin, Germany
[3] Rhein Westfal TH Aachen, Chair Comp Sci 5, D-52074 Aachen, Germany
来源
SYMMETRY-BASEL | 2019年 / 11卷 / 04期
关键词
intrusion detection system; deep learning; Spark ML; CNN; LSTM; Conv-LSTM; ANOMALY DETECTION; MODEL;
D O I
10.3390/sym11040583
中图分类号
O [数理科学和化学]; P [天文学、地球科学]; Q [生物科学]; N [自然科学总论];
学科分类号
07 ; 0710 ; 09 ;
摘要
With the rapid advancements of ubiquitous information and communication technologies, a large number of trustworthy online systems and services have been deployed. However, cybersecurity threats are still mounting. An intrusion detection (ID) system can play a significant role in detecting such security threats. Thus, developing an intelligent and accurate ID system is a non-trivial research problem. Existing ID systems that are typically used in traditional network intrusion detection system often fail and cannot detect many known and new security threats, largely because those approaches are based on classical machine learning methods that provide less focus on accurate feature selection and classification. Consequently, many known signatures from the attack traffic remain unidentifiable and become latent. Furthermore, since a massive network infrastructure can produce large-scale data, these approaches often fail to handle them flexibly, hence are not scalable. To address these issues and improve the accuracy and scalability, we propose a scalable and hybrid IDS, which is based on Spark ML and the convolutional-LSTM (Conv-LSTM) network. This IDS is a two-stage ID system: the first stage employs the anomaly detection module, which is based on Spark ML. The second stage acts as a misuse detection module, which is based on the Conv-LSTM network, such that both global and local latent threat signatures can be addressed. Evaluations of several baseline models in the ISCX-UNB dataset show that our hybrid IDS can identify network misuses accurately in 97.29% of cases and outperforms state-of-the-art approaches during 10-fold cross-validation tests.
引用
收藏
页数:14
相关论文
共 50 条
  • [1] A deep convolutional-LSTM neural network for signal detection of downlink NOMA system
    Panda, Bibekananda
    Singh, Poonam
    AEU-INTERNATIONAL JOURNAL OF ELECTRONICS AND COMMUNICATIONS, 2023, 170
  • [2] A Hypertuned Lightweight and Scalable LSTM Model for Hybrid Network Intrusion Detection
    Bibi, Aysha
    Sampedro, Gabriel Avelino
    Almadhor, Ahmad
    Javed, Abdul Rehman
    Kim, Tai-hoon
    TECHNOLOGIES, 2023, 11 (05)
  • [3] Adaptive convolutional-LSTM neural network with NADAM optimization for intrusion detection in underwater IoT wireless sensor networks
    Arivumani, Samson
    Nagarajan, M.
    ENGINEERING RESEARCH EXPRESS, 2024, 6 (03):
  • [4] Hierarchical LSTM-Based Network Intrusion Detection System Using Hybrid Classification
    Han, Jonghoo
    Pak, Wooguil
    APPLIED SCIENCES-BASEL, 2023, 13 (05):
  • [5] Intrusion Detection System Using Hybrid Convolutional Neural Network
    Samha, Amani K.
    Malik, Nidhi
    Sharma, Deepak
    Kavitha, S.
    Dutta, Papiya
    MOBILE NETWORKS & APPLICATIONS, 2023,
  • [6] Intrusion Detection System in Smart Home Network Using Bidirectional LSTM and Convolutional Neural Networks Hybrid Model
    Elsayed, Nelly
    Zaghloul, Zaghloul Saad
    Azumah, Sylvia Worlali
    Li, Chengcheng
    2021 IEEE INTERNATIONAL MIDWEST SYMPOSIUM ON CIRCUITS AND SYSTEMS (MWSCAS), 2021, : 55 - 58
  • [7] HCRNNIDS: Hybrid Convolutional Recurrent Neural Network-Based Network Intrusion Detection System
    Khan, Muhammad Ashfaq
    PROCESSES, 2021, 9 (05)
  • [8] A network intrusion detection system based on convolutional neural network
    Wang, Hui
    Cao, Zijian
    Hong, Bo
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2020, 38 (06) : 7623 - 7637
  • [9] An Intrusion Detection System Based on Convolutional Neural Network
    Liu, Pengju
    PROCEEDINGS OF 2019 11TH INTERNATIONAL CONFERENCE ON COMPUTER AND AUTOMATION ENGINEERING (ICCAE 2019), 2019, : 62 - 67
  • [10] CNN-LSTM: Hybrid Deep Neural Network for Network Intrusion Detection System
    Halbouni, Asmaa
    Gunawan, Teddy Surya
    Habaebi, Mohamed Hadi
    Halbouni, Murad
    Kartiwi, Mira
    Ahmad, Robiah
    IEEE ACCESS, 2022, 10 : 99837 - 99849