Enhancing network intrusion detection by lifelong active online learning

被引:2
作者
Chuang, Po-Jen [1 ]
Huang, Pang-Yu [1 ]
机构
[1] Tamkang Univ, Dept Elect & Comp Engn, New Taipei 25137, Taiwan
关键词
Network intrusion detection; Machine learning; Active learning; Lifelong learning; Online learning; Performance evaluation;
D O I
10.1007/s11227-024-06070-4
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Machine learning has been widely used to build intrusion detection models in detecting unknown attack traffic. How to train a model properly in order to attain the desired intrusion detection is an important topic. In contrast to offline learning, online learning proves more practical as it can update models simultaneously in the detecting process to comply with real network traffic. Active learning is an effective way to realize online learning. Among existing active learning mechanisms proposed to perform intrusion detection, most fail to meet the real online environment or to run persistently. This paper presents a new active online learning mechanism to secure better intrusion detection performance. The new mechanism advances related works in bringing the lifelong learning practice to fit in the online environment. It uses the efficient random forest (RF) as the detection model to train samples and adds a new tree to train a new batch of data when updating the model at each online stage, to pursue lifelong learning. By training a new batch of data only, it can keep the previously trained weights from being updated so as to preserve the past knowledge. Our mechanism is experimentally proved to yield better overall results than existing mechanisms: It produces superior training efficiency and detection performance-with the least training time, best training data quality and much reduced training data quantity.
引用
收藏
页码:16428 / 16451
页数:24
相关论文
共 50 条
  • [41] Network intrusion detection system using an optimized machine learning algorithm
    Alabdulatif, Abdulatif
    Rizvi, Syed Sajjad Hussain
    [J]. MEHRAN UNIVERSITY RESEARCH JOURNAL OF ENGINEERING AND TECHNOLOGY, 2023, 42 (01) : 153 - 164
  • [42] Active Learning Intrusion Detection using k-Means Clustering Selection
    McElwee, Steven
    [J]. SOUTHEASTCON 2017, 2017,
  • [43] Differentially Private Online Active Learning with Applications to Anomaly Detection
    Ghassemi, Mohsen
    Sarwate, Anand D.
    Wright, Rebecca N.
    [J]. AISEC'16: PROCEEDINGS OF THE 2016 ACM WORKSHOP ON ARTIFICIAL INTELLIGENCE AND SECURITY, 2016, : 117 - 128
  • [44] Active Lifelong Anomaly Detection with Experience Replay
    Faber, Kamil
    Corizzo, Roberto
    Sniezynski, Bartlomiej
    Japkowicz, Nathalie
    [J]. 2022 IEEE 9TH INTERNATIONAL CONFERENCE ON DATA SCIENCE AND ADVANCED ANALYTICS (DSAA), 2022, : 849 - 858
  • [45] An Efficient Federated Learning System for Network Intrusion Detection
    Li, Jianbin
    Tong, Xin
    Liu, Jinwei
    Cheng, Long
    [J]. IEEE SYSTEMS JOURNAL, 2023, 17 (02): : 2455 - 2464
  • [46] Network intrusion detection system: A machine learning approach
    Panda, Mrutyunjaya
    Abraham, Ajith
    Das, Swagatam
    Patra, Manas Ranjan
    [J]. INTELLIGENT DECISION TECHNOLOGIES-NETHERLANDS, 2011, 5 (04): : 347 - 356
  • [47] A Review of Machine Learning Methodologies for Network Intrusion Detection
    Phadke, Aditya
    Kulkarni, Mohit
    Bhawalkar, Pranav
    Bhattad, Rashmi
    [J]. PROCEEDINGS OF THE 2019 3RD INTERNATIONAL CONFERENCE ON COMPUTING METHODOLOGIES AND COMMUNICATION (ICCMC 2019), 2019, : 272 - 275
  • [48] Evaluation of Machine Learning Techniques for Network Intrusion Detection
    Zaman, Marzia
    Lung, Chung-Horng
    [J]. NOMS 2018 - 2018 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, 2018,
  • [49] Deep Learning Applications for Intrusion Detection in Network Traffic
    Getman, A. I.
    Rybolovlev, D. A.
    Nikolskaya, A. G.
    [J]. PROGRAMMING AND COMPUTER SOFTWARE, 2024, 50 (07) : 493 - 510
  • [50] Network Intrusion Detection using Machine Learning Approaches
    Hossain, Zakir
    Sourov, Md Mahmudur Rahman
    Khan, Musharrat
    Rahman, Parves
    [J]. PROCEEDINGS OF THE 2021 FIFTH INTERNATIONAL CONFERENCE ON I-SMAC (IOT IN SOCIAL, MOBILE, ANALYTICS AND CLOUD) (I-SMAC 2021), 2021, : 303 - 307