Untargeted white-box adversarial attack with heuristic defence methods in real-time deep learning based network intrusion detection system

被引:15
作者
Roshan, Khushnaseeb [1 ]
Zafar, Aasim [1 ]
Ul Haque, Shiekh Burhan [1 ]
机构
[1] Aligarh Muslim Univ Cent Uni, Dept Comp Sci, Aligarh 202002, India
关键词
Network intrusion detection; Deep neural network; Adversarial machine learning; Adversarial attack; Adversarial defence; SECURITY;
D O I
10.1016/j.comcom.2023.09.030
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Network Intrusion Detection System (NIDS) is a key component in securing the computer network from various cyber security threats and network attacks. However, consider an unfortunate situation where the NIDS is itself attacked and vulnerable; more specifically, we can ask, "How to defend the defender?". In Adversarial Machine Learning (AML), the malicious actors aim to fool the Machine Learning (ML) and Deep Learning (DL) models to produce incorrect predictions with intentionally crafted adversarial examples. These adversarial perturbed examples have become the biggest vulnerability of ML and DL based systems and are major obstacles to their adoption in real-time and mission-critical applications such as NIDS. AML is an emerging research domain, and it has become a necessity for the in-depth study of adversarial attacks and their defence strategies to safeguard the computer network from various cyber security threads. In this research work, we aim to cover important aspects related to NIDS, adversarial attacks and its defence mechanism to increase the robustness of the ML and DL based NIDS. We implemented four powerful adversarial attack techniques, namely, Fast Gradient Sign Method (FGSM), Jacobian Saliency Map Attack (JSMA), Projected Gradient Descent (PGD) and Carlini & Wagner (C&W) in NIDS. We analyzed its performance in terms of various performance metrics in detail. Furthermore, the three heuristics defence strategies, i.e., Adversarial Training (AT), Gaussian Data Augmentation (GDA) and High Confidence (HC), are implemented to improve the NIDS robustness under adversarial attack situations. The complete workflow is demonstrated in real-time network with data packet flow. This research work provides the overall background for the researchers interested in AML and its implementation from a computer network security point of view.
引用
收藏
页码:97 / 113
页数:17
相关论文
共 45 条
  • [21] Enhancing the Sustainability of Deep-Learning-Based Network Intrusion Detection Classifiers against Adversarial Attacks
    Alotaibi, Afnan
    Rassam, Murad A.
    [J]. SUSTAINABILITY, 2023, 15 (12)
  • [22] ClockIDS: A Real-Time Vehicle Intrusion Detection System Based on Clock Skew
    Zhao, Yilin
    Xun, Yijie
    Liu, Jiajia
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (17) : 15593 - 15606
  • [23] Adversarial Attack Mitigation Strategy for Machine Learning-Based Network Attack Detection Model in Power System
    Huang, Rong
    Li, Yuancheng
    [J]. IEEE TRANSACTIONS ON SMART GRID, 2023, 14 (03) : 2367 - 2376
  • [24] Real-Time Intrusion Detection in Power Grids Using Deep Learning: Ensuring DPU Data Security
    Xiao, Maoran
    Zhou, Qi
    Zhang, Zhen
    Yin, Junjie
    [J]. HighTech and Innovation Journal, 2024, 5 (03): : 814 - 827
  • [25] Hybrid deep learning-based intrusion detection system for wireless sensor network
    Gowdhaman V.
    Dhanapal R.
    [J]. International Journal of Vehicle Information and Communication Systems, 2024, 9 (03) : 239 - 255
  • [26] Zero-Touch Network Security (ZTNS): A Network Intrusion Detection System Based on Deep Learning
    Qazi, Emad-Ul-Haq
    Zia, Tanveer
    Hamza Faheem, Muhammad
    Shahzad, Khurram
    Imran, Muhammad
    Ahmed, Zeeshan
    [J]. IEEE ACCESS, 2024, 12 : 141625 - 141638
  • [28] Deep Learning Based IoT System for Real-time Traffic Risk Notifications
    Islam, Sahidul
    Klupka, Seth
    Mohammadi, Ramin
    Jin, Yu-Fang
    Xie, Mimi
    [J]. 2024 25TH INTERNATIONAL SYMPOSIUM ON QUALITY ELECTRONIC DESIGN, ISQED 2024, 2024,
  • [29] PhishingRTDS: A real-time detection system for phishing attacks using a Deep Learning model
    Asiri, Sultan
    Xiao, Yang
    Alzahrani, Saleh
    Li, Tieshan
    [J]. COMPUTERS & SECURITY, 2024, 141
  • [30] SecFedNIDS: Robust defense for poisoning attack against federated learning-based network intrusion detection system
    Zhang, Zhao
    Zhang, Yong
    Guo, Da
    Yao, Lei
    Li, Zhao
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2022, 134 : 154 - 169