Enhancing network intrusion detection by lifelong active online learning

被引:2
|
作者
Chuang, Po-Jen [1 ]
Huang, Pang-Yu [1 ]
机构
[1] Tamkang Univ, Dept Elect & Comp Engn, New Taipei 25137, Taiwan
来源
JOURNAL OF SUPERCOMPUTING | 2024年 / 80卷 / 11期
关键词
Network intrusion detection; Machine learning; Active learning; Lifelong learning; Online learning; Performance evaluation;
D O I
10.1007/s11227-024-06070-4
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Machine learning has been widely used to build intrusion detection models in detecting unknown attack traffic. How to train a model properly in order to attain the desired intrusion detection is an important topic. In contrast to offline learning, online learning proves more practical as it can update models simultaneously in the detecting process to comply with real network traffic. Active learning is an effective way to realize online learning. Among existing active learning mechanisms proposed to perform intrusion detection, most fail to meet the real online environment or to run persistently. This paper presents a new active online learning mechanism to secure better intrusion detection performance. The new mechanism advances related works in bringing the lifelong learning practice to fit in the online environment. It uses the efficient random forest (RF) as the detection model to train samples and adds a new tree to train a new batch of data when updating the model at each online stage, to pursue lifelong learning. By training a new batch of data only, it can keep the previously trained weights from being updated so as to preserve the past knowledge. Our mechanism is experimentally proved to yield better overall results than existing mechanisms: It produces superior training efficiency and detection performance-with the least training time, best training data quality and much reduced training data quantity.
引用
收藏
页码:16428 / 16451
页数:24
相关论文
共 50 条
  • [21] Online Active Continual Learning for Robotic Lifelong Object Recognition
    Nie, Xiangli
    Deng, Zhiguang
    He, Mingdong
    Fan, Mingyu
    Tang, Zheng
    IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2023, 35 (12) : 1 - 15
  • [22] An Online Network Intrusion Detection Model Based on Improved Regularized Extreme Learning Machine
    Tang, Yanqiang
    Li, Chenghai
    IEEE ACCESS, 2021, 9 : 94826 - 94844
  • [23] Adaptive and online network intrusion detection system using clustering and Extreme Learning Machines
    Roshan, Setareh
    Miche, Yoan
    Akusok, Anton
    Lendasse, Amaury
    JOURNAL OF THE FRANKLIN INSTITUTE-ENGINEERING AND APPLIED MATHEMATICS, 2018, 355 (04): : 1752 - 1779
  • [24] Enhancing Online Intrusion Detection Systems via Attack Clustering
    Yavari, Sara
    Oteafy, Sharief
    IEEE CONFERENCE ON GLOBAL COMMUNICATIONS, GLOBECOM, 2023, : 4650 - 4655
  • [25] Enhancing intrusion detection with feature selection and neural network
    Wu, Chunhui
    Li, Wenjuan
    INTERNATIONAL JOURNAL OF INTELLIGENT SYSTEMS, 2021, 36 (07) : 3087 - 3105
  • [26] Enhancing network based intrusion detection for imbalanced data
    Engen, Vegard
    Vincent, Jonathan
    Phalp, Keith
    INTERNATIONAL JOURNAL OF KNOWLEDGE-BASED AND INTELLIGENT ENGINEERING SYSTEMS, 2008, 12 (5-6) : 357 - 367
  • [27] Enhancing network intrusion detection with integrated sampling and filtering
    Gonzalez, Jose M.
    Paxson, Vern
    RECENT ADVANCES IN INTRUSION DETECTION, PROCEEDINGS, 2006, 4219 : 272 - 289
  • [28] ACTIVE LEARNING FOR WIRELESS IOT INTRUSION DETECTION
    Yang, Kai
    Ren, Jie
    Zhu, Yanqiao
    Zhang, Weiyi
    IEEE WIRELESS COMMUNICATIONS, 2018, 25 (06) : 19 - 25
  • [29] Reviews in Online Data Stream and Active Learning for Cyber Intrusion Detection - A Systematic Literature Review
    Nixon, Christopher
    Sedky, Mohamed
    Hassan, Mohamed
    2021 SIXTH INTERNATIONAL CONFERENCE ON FOG AND MOBILE EDGE COMPUTING (FMEC), 2021, : 126 - 131
  • [30] Kitsune: An Ensemble of Autoencoders for Online Network Intrusion Detection
    Mirsky, Yisroel
    Doitshman, Tomer
    Elovici, Yuval
    Shabtai, Asaf
    25TH ANNUAL NETWORK AND DISTRIBUTED SYSTEM SECURITY SYMPOSIUM (NDSS 2018), 2018,