A computationally efficient dimensionality reduction and attack classification approach for network intrusion detection

被引:1
|
作者
Patel, N. D. [1 ,2 ]
Mehtre, B. M. [1 ]
Wankar, Rajeev [2 ]
机构
[1] Inst Dev & Res Banking Technol IDRBT, Ctr Excellence Cyber Secur CoECS, Castle Hills,Rd 1,Masab Tank, Hyderabad 500057, Telangana, India
[2] Univ Hyderabad, Sch Comp & Informat Sci SCIS, Hyderabad 500046, Telangana, India
关键词
Network Intrusion Detection; Dimensionality Reduction; IDS Datasets; Feature Selection; Classification; Supervised Learning; DEEP LEARNING APPROACH; ANOMALY DETECTION;
D O I
10.1007/s10207-023-00792-x
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
An intrusion detection system (IDS) is a system that monitors network traffic for malicious activity and generates alerts. In anomaly-based detection, machine learning (ML) algorithms exploit various statistical and probabilistic methods to learn from past or historical experience and detect valuable patterns from large, unstructured, and complex datasets. ML-based network intrusion detection aims to identify malicious behavior and alert a system administrator when an intruder tries to penetrate the network. This paper deals with the study, strategic construction, and implementation of a network intrusion detection model based on ML methods. Among the available IDS datasets, five of the most relevant are chosen for the experimental analysis, which are NSL-KDD-2009, CIC-IDS2017, CIC-IDS2018, IoTID20, and UNSW-NB15 datasets. In order to reduce the computation time in the training sample and achieve computational complexity O(N2.38 +/-delta)\documentclass[12pt]{minimal} \usepackage{amsmath} \usepackage{wasysym} \usepackage{amsfonts} \usepackage{amssymb} \usepackage{amsbsy} \usepackage{mathrsfs} \usepackage{upgreek} \setlength{\oddsidemargin}{-69pt} \begin{document}$$O(N<^>{2.38 \pm \delta })$$\end{document}, we propose a computationally efficient and feasible algorithmic framework for analyzing the network traffic data. The developed approach mainly consists of two phases, i.e., "Scatter Matrices and Eigenvalue Computation based feature Selection" and "Classification procedure for the reduced dimension data." Experimental evaluation of various test case scenarios for the chosen datasets is carried out in the simulation setting. It is observed that the test results outperform the existing intrusion detection methods for detecting certain attack categories.
引用
收藏
页码:2457 / 2487
页数:31
相关论文
共 50 条
  • [41] Dimensionality Reduction for Probabilistic Neural Network in Medical Data Classification Problems
    Kusy, Maciej
    INTERNATIONAL JOURNAL OF ELECTRONICS AND TELECOMMUNICATIONS, 2015, 61 (03) : 289 - 300
  • [42] Towards Data-Driven Network Intrusion Detection Systems: Features Dimensionality Reduction and Machine Learning
    Maabreh M.
    Obeidat I.
    Elsoud E.A.
    Alnajjai A.
    Alzyoud R.
    Darwish O.
    International Journal of Interactive Mobile Technologies, 2022, 16 (14) : 123 - 135
  • [43] Nonlinear Dimensionality Reduction for Intrusion Detection Using Auto-Encoder Bottleneck Features
    Abolhasanzadeh, Bahareh
    2015 7TH CONFERENCE ON INFORMATION AND KNOWLEDGE TECHNOLOGY (IKT), 2015,
  • [44] Od-ids2022: generating a new offensive defensive intrusion detection dataset for machine learning-based attack classification
    Patel N.D.
    Mehtre B.M.
    Wankar R.
    International Journal of Information Technology, 2023, 15 (8) : 4349 - 4363
  • [45] A New Approach to Dimensionality Reduction for Anomaly Detection in Data Traffic
    Huang, Tingshan
    Sethu, Harish
    Kandasamy, Nagarajan
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2016, 13 (03): : 651 - 665
  • [46] Efficient BiSRU Combined With Feature Dimensionality Reduction for Abnormal Traffic Detection
    Ding, Pengpeng
    Li, Jinguo
    Wen, Mi
    Wang, Liangliang
    Li, Hongjiao
    IEEE ACCESS, 2020, 8 : 164414 - 164427
  • [47] Design of Novel Fuzzy Distribution Function for Dimensionality Reduction and Intrusion Detection
    Kumar, Gunupudi Rajesh
    Mangathayaru, Nimmala
    Narsimha, Gugulothu
    2016 INTERNATIONAL CONFERENCE ON ENGINEERING & MIS (ICEMIS), 2016,
  • [48] Network intrusion detection using data dimensions reduction techniques
    Anita Shiravani
    Mohammad Hadi Sadreddini
    Hassan Nosrati Nahook
    Journal of Big Data, 10
  • [49] A Hands-off Approach to Network Intrusion Detection
    Ling, Yuning
    Rosti, Marcus
    Swanson, Gregory
    2016 IEEE SYSTEMS AND INFORMATION ENGINEERING DESIGN SYMPOSIUM (SIEDS), 2016, : 216 - 220
  • [50] An efficient XGBoost-DNN-based classification model for network intrusion detection system
    Devan, Preethi
    Khare, Neelu
    NEURAL COMPUTING & APPLICATIONS, 2020, 32 (16) : 12499 - 12514