Meta-analysis and systematic review for anomaly network intrusion detection systems: Detection methods, dataset, validation methodology, and challenges

被引:5
作者
Maseer, Ziadoon K. [1 ,2 ]
Kadhim, Qusay Kanaan [2 ]
Al-Bander, Baidaa [3 ]
Yusof, Robiah [4 ]
Saif, Abdu [5 ]
机构
[1] Bilad Al Rafidain Univ Coll, Fac Comp Technol Engn, Baquba, Iraq
[2] Univ Diyala, Coll Sci, Dept Comp Sci, Baquba, Diyala, Iraq
[3] Keele Univ, Sch Comp, Keele, England
[4] Univ Teknikal Malaysia Melaka, Fac Informat & Commun Technol, Melaka, Malaysia
[5] Taiz Univ, Fac Engn, Taizi, Yemen
关键词
computer network security; computer networks; DEEP LEARNING APPROACH; WIRELESS NETWORK; BAT ALGORITHM; OPTIMIZATION; PERFORMANCE; FRAMEWORK; MODEL; SVM;
D O I
10.1049/ntw2.12128
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Intrusion detection systems built on artificial intelligence (AI) are presented as latent mechanisms for actively detecting fresh attacks over a complex network. The authors used a qualitative method for analysing and evaluating the performance of network intrusion detection system (NIDS) in a systematic way. However, their approach has limitations as it only identifies gaps by analysing and summarising data comparisons without considering quantitative measurements of NIDS's performance. The authors provide a detailed discussion of various deep learning (DL) methods and explain data intrusion networks based on an infrastructure of networks and attack types. The authors' main contribution is a systematic review that utilises meta-analysis to provide an in-depth analysis of DL and traditional machine learning (ML) in notable recent works. The authors assess validation methodologies and clarify recent trends related to dataset intrusion, detected attacks, and classification tasks to improve traditional ML and DL in NIDS-based publications. Finally, challenges and future developments are discussed to pose new risks and complexities for network security. The authors offer a systematic meta-analysis of AI applications in network intrusion detection systems (NIDS) with a specific focus on deep learning (DL) and machine learning (ML) techniques within the domain of network security. Through a comprehensive meta-analysis and rigorous evaluation of the effectiveness, dataset utilisation, attack detection capabilities, classification tasks, and time complexity of DL and ML approaches, the authors present a comprehensive benchmarking assessment of the prevailing systematic approach in NIDS-based publications. image
引用
收藏
页码:339 / 376
页数:38
相关论文
共 215 条
  • [1] Addressing the class imbalance problem in network intrusion detection systems using data resampling and deep learning
    Abdelkhalek, Ahmed
    Mashaly, Maggie
    [J]. JOURNAL OF SUPERCOMPUTING, 2023, 79 (10) : 10611 - 10644
  • [2] Deep and Machine Learning Approaches for Anomaly-Based Intrusion Detection of Imbalanced Network Traffic
    Abdulhammed, Razan
    Faezipour, Miad
    Abuzneid, Abdelshakour
    AbuMallouh, Arafat
    [J]. IEEE SENSORS LETTERS, 2019, 3 (01)
  • [3] A novel SVM-kNN-PSO ensemble method for intrusion detection system
    Aburomman, Abdulla Amin
    Reaz, Mamun Bin Ibne
    [J]. APPLIED SOFT COMPUTING, 2016, 38 : 360 - 372
  • [4] A deep learning approach for proactive multi-cloud cooperative intrusion detection system
    Abusitta, Adel
    Bellaiche, Martine
    Dagenais, Michel
    Halabi, Talal
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2019, 98 : 308 - 318
  • [5] Network intrusion detection system: A systematic study of machine learning and deep learning approaches
    Ahmad, Zeeshan
    Shahid Khan, Adnan
    Wai Shiang, Cheah
    Abdullah, Johari
    Ahmad, Farhan
    [J]. TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2021, 32 (01)
  • [6] Ahmed H., 2017, J TELECOMMUNICATION, P87
  • [7] Applying the MCMSI for Online Educational Systems Using the Two-Factor Authentication
    Ahmed S.T.
    Kadhim Q.K.
    Mahdi H.S.
    Almahdy W.S.A.
    [J]. Ahmed, Shaymaa Taha (Shaymaa.taha.ahmed@basicedu.uodiyala.edu); Kadhim, Qusay Kanaan (qusaykn@bauc14.edu.iq); Mahdi, Hamid Sadeq (hamedsultani@uodiyala.edu.iq); Almahdy, Widyan Salman Abd (drasatolia2020@gmail.com), 1600, International Association of Online Engineering (15): : 162 - 171
  • [8] Ahmed Shaymaa Taha, 2021, IOP Conference Series: Materials Science and Engineering, V1090, DOI 10.1088/1757-899X/1090/1/012078
  • [9] A feature reduced intrusion detection system using ANN classifier
    Akashdeep
    Manzoor, Ishfaq
    Kumar, Neeraj
    [J]. EXPERT SYSTEMS WITH APPLICATIONS, 2017, 88 : 249 - 257
  • [10] Deep Learning Approach Combining Sparse Autoencoder With SVM for Network Intrusion Detection
    Al-Qatf, Majjed
    Yu Lasheng
    Al-Habib, Mohammed
    Al-Sabahi, Kamal
    [J]. IEEE ACCESS, 2018, 6 : 52843 - 52856