A Multi-agent Case-Based Reasoning Intrusion Detection System Prototype

被引:1
|
作者
Schoenborn, Jakob Michael [1 ,2 ]
Althoff, Klaus-Dieter [1 ,2 ]
机构
[1] Univ Hildesheim, Univ Pl 1, D-31141 Hildesheim, Germany
[2] German Res Ctr Artificial Intelligence DFKI, Trippstadter Str 122, D-67663 Kaiserslautern, Germany
来源
CASE-BASED REASONING RESEARCH AND DEVELOPMENT, ICCBR 2023 | 2023年 / 14141卷
关键词
Case-based Reasoning; SEASALT; Intrusion Detection System; Multi-Agent System;
D O I
10.1007/978-3-031-40177-0_23
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The number of actors, costs, and incidents in terms of internet criminality is rising each year as many devices in our daily routines become increasingly connected to the internet. 'Security by design' is gaining increased awareness in software engineering, but it is not to be expected to catch all security issues as the range of potential security issues and the creativity of the attackers are both seemingly endless. Thus, we propose a multi-agent case-based reasoning system to detect malicious traffic in a computer network. We mainly rely on the commonly used UNSW_NB15 data set including 82332 training cases with mostly numeric attributes, but the application design is open to operate with other data sources, such as NSL-KDD and CICIDS-2017 as well. Purpose. The aim of the proposed system is to detect malicious network traffic and alert the security engineer of a company to take further actions such as blocking the source IP address of the potential attacker. Findings. We were able to successfully detect seven out of ten attacks with an average true-positive rate of 82,56% and leave the remaining attacks (Analysis, Backdoor, Worms) for further investigation and improvements. Implications and value. The results are close to other research results with room for improvement. Due to the nature of a multi-agent framework, this application could be integrated into other existing intrusion detection systems and serve as an add-on.
引用
收藏
页码:359 / 374
页数:16
相关论文
共 50 条
  • [21] A Multi-agent System for Smartphone Intrusion Detection Framework
    Alzahrani, Abdullah J.
    Ghorbani, Ali A.
    PROCEEDINGS OF THE 18TH ASIA PACIFIC SYMPOSIUM ON INTELLIGENT AND EVOLUTIONARY SYSTEMS, VOL 1, 2015, : 101 - 113
  • [22] An Immune Multi-agent System for Network Intrusion Detection
    Wang, Dian Gang
    Li, Tao
    Liu, Sun Jun
    Liang, Gang
    Zhao, Kui
    ADVANCES IN COMPUTATION AND INTELLIGENCE, PROCEEDINGS, 2008, 5370 : 436 - 445
  • [23] Case-based conflict resolution in multi-agent ship design system
    Lee, KH
    Lee, KY
    AI 2005: ADVANCES IN ARTIFICIAL INTELLIGENCE, 2005, 3809 : 826 - 829
  • [24] A multi-agent case-based traffic control scenario evaluation system
    De Schutter, B
    Hoogendoorn, SP
    Schuurman, H
    Stramigioli, S
    2003 IEEE INTELLIGENT TRANSPORTATION SYSTEMS PROCEEDINGS, VOLS. 1 & 2, 2003, : 678 - 683
  • [25] Immunity diversity based multi-agent intrusion detection
    Gu, Yu
    Zhao, Jiashu
    2007 IEEE CONGRESS ON EVOLUTIONARY COMPUTATION, VOLS 1-10, PROCEEDINGS, 2007, : 3404 - 3409
  • [26] A Multi-agent System-Based Distributed Intrusion Detection System for a Cloud Computing
    Achbarou, Omar
    El Kiram, My Ahmed
    Bourkoukou, Outmane
    Elbouanani, Salim
    NEW TRENDS IN MODEL AND DATA ENGINEERING (MEDI 2018), 2018, 929 : 98 - 107
  • [27] Towards a Multi-Agent based Network Intrusion Detection System for a Fleet of Drones
    Ouiazzane S.
    Barramou F.
    Addou M.
    International Journal of Advanced Computer Science and Applications, 2020, 11 (10): : 351 - 362
  • [28] A Research into an Intrusion Detection System Based on Immune Principle and Multi-Agent in WSN
    Liu ZhiYue
    Wang Jian
    MATERIALS SCIENCE AND INFORMATION TECHNOLOGY, PTS 1-8, 2012, 433-440 : 5157 - +
  • [29] Intrusion Detection System for the Internet of Things Based on Blockchain and Multi-Agent Systems
    Liang, Chao
    Shanmugam, Bharanidharan
    Azam, Sami
    Karim, Asif
    Islam, Ashraful
    Zamani, Mazdak
    Kavianpour, Sanaz
    Idris, Norbik Bashah
    ELECTRONICS, 2020, 9 (07) : 1 - 27
  • [30] Research and Design of Multi-agent Based Intrusion Detection System on Wireless Network
    Wang Hairui
    Wang Hua
    PROCEEDINGS OF THE 2008 INTERNATIONAL SYMPOSIUM ON COMPUTATIONAL INTELLIGENCE AND DESIGN, VOL 1, 2008, : 444 - +