Generative Pattern Dissemination for Collaborative Intrusion Detection

被引:0
|
作者
Petersen, Mike [1 ]
Hardegen, Christoph [1 ]
Buehler, Ulrich [1 ]
机构
[1] Fulda Univ Appl Sci, Dept Appl Comp Sci, Fulda, Germany
来源
2023 6TH CONFERENCE ON CLOUD AND INTERNET OF THINGS, CIOT | 2023年
关键词
Collaborative Intrusion Detection; Data Dissemination; Generative Models; Traffic Classification; Network Flows; ATTACKS;
D O I
10.1109/CIoT57267.2023.10084911
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
New cyber security threats emerge dynamically, challenging conventional Intrusion Detection Systems, limited by isolated analysis, to maintain an updated decision base. Although Collaborative Intrusion Detection Systems improve attack detection performance by providing mechanisms for sharing and correlating analysis data, existing solutions neglect the aspect of a scalable dissemination of monitoring data. In this context, we present a novel approach that distributes network flow data among members in a group of cooperating infrastructures to enhance local data views while meeting requirements for low communication overhead, privacy and interoperability. Flows are partitioned using Locality Sensitive Hashing and persisted in a local data store by using the respective hash values. Gaussian Mixture Models are fitted on stored flows and the resulting model parameters are sent to a global data store, enabling members to locally reconstruct the corresponding models from which synthetic data can be sampled to improve local attack detection. Representing local data as model parameters significantly reduces the amount of data exchanged and ensures privacy. Associated processing latency is reduced by exploiting the parallelization enabled by data partitioning. Traffic classification experiments on multiple network security datasets show the superior performance of our approach in comparison to alternative scenarios.
引用
收藏
页码:163 / 170
页数:8
相关论文
共 50 条
  • [41] Towards Securing Challenge-Based Collaborative Intrusion Detection Networks via Message Verification
    Li, Wenjuan
    Meng, Weizhi
    Wang, Yu
    Han, Jinguang
    Li, Jin
    INFORMATION SECURITY PRACTICE AND EXPERIENCE (ISPEC 2018), 2018, 11125 : 313 - 328
  • [42] A Collaborative Intrusion Detection Mechanism Against False Data Injection Attack in Advanced Metering Infrastructure
    Liu, Xiaoxue
    Zhu, Peidong
    Zhang, Yan
    Chen, Kan
    IEEE TRANSACTIONS ON SMART GRID, 2015, 6 (05) : 2435 - 2443
  • [43] Towards Collaborative Intrusion Detection Enhancement against Insider Attacks with Multi-Level Trust
    Li, Wenjuan
    Meng, Weizhi
    Zhu, Hui
    2020 IEEE 19TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM 2020), 2020, : 1180 - 1187
  • [44] The Improved AC High-Performance Pattern-Matching Algorithm for Intrusion Detection
    Xu, Dongliang
    Zhang, Hongli
    Hou, Miao
    WEB TECHNOLOGIES AND APPLICATIONS, APWEB 2014, PT II, 2014, 8710 : 200 - 213
  • [45] Enhancing blockchain-based filtration mechanism via IPFS for collaborative intrusion detection in IoT networks*
    Li, Wenjuan
    Wang, Yu
    Li, Jin
    JOURNAL OF SYSTEMS ARCHITECTURE, 2022, 127
  • [46] Enhancing challenge-based collaborative intrusion detection networks against insider attacks using blockchain
    Weizhi Meng
    Wenjuan Li
    Laurence T. Yang
    Peng Li
    International Journal of Information Security, 2020, 19 : 279 - 290
  • [47] MetaCIDS: Privacy-Preserving Collaborative Intrusion Detection for Metaverse based on Blockchain and Online Federated Learning
    Truong, Vu Tuan
    Le, Long Bao
    IEEE OPEN JOURNAL OF THE COMPUTER SOCIETY, 2023, 4 : 253 - 266
  • [48] Enhancing Challenge-based Collaborative Intrusion Detection Against Insider Attacks using Spatial Correlation
    Li, Wenjuan
    Meng, Weizhi
    Parra-Arnau, Javier
    Choo, Kim-Kwang Raymond
    2021 IEEE CONFERENCE ON DEPENDABLE AND SECURE COMPUTING (DSC), 2021,
  • [49] Enhancing challenge-based collaborative intrusion detection networks against insider attacks using blockchain
    Meng, Weizhi
    Li, Wenjuan
    Yang, Laurence T.
    Li, Peng
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2020, 19 (03) : 279 - 290
  • [50] Surveying Trust-Based Collaborative Intrusion Detection: State-of-the-Art, Challenges and Future Directions
    Li, Wenjuan
    Meng, Weizhi
    Kwok, Lam For
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2022, 24 (01): : 280 - 305