A sequential deep learning framework for a robust and resilient network intrusion detection system

被引:6
|
作者
Hore, Soumyadeep [1 ]
Ghadermazi, Jalal [1 ]
Shah, Ankit [1 ]
Bastian, Nathaniel D. [2 ]
机构
[1] Univ S Florida, Dept Ind & Management Syst Engn, Tampa, FL 33620 USA
[2] United States Mil Acad, Army Cyber Inst, West Point, NY 10996 USA
关键词
Network intrusion detection system (NIDS); Multistage AI-based NIDS; Malicious packet classifier; Anomaly detector; Novelty detector; Sequential deep neural networks; One-shot learning; Transfer learning;
D O I
10.1016/j.cose.2024.103928
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Ensuring the security and integrity of computer and network systems is of utmost importance in today's digital landscape. Network intrusion detection systems (NIDS) play a critical role in continuously monitoring network traffic and identifying unauthorized or potentially malicious activities that could compromise the confidentiality, availability, and integrity of these systems. However, traditional NIDS face a daunting challenge in effectively adapting to the evolving tactics of cyber attackers. To address this challenge, we propose a multistage artificial intelligence enabled framework for intrusion detection in network traffic, capable of handling zero-day, out -of -distribution, and adversarial evasion attacks. Our framework comprises three sequential deep neural network (DNN) architectures: one for the classifier and two for specific autoencoders, designed to effectively detect both known attack patterns and novel, previously unseen samples. We introduce an innovative transfer learning technique where specific combinations of neurons and layers in the DNN architectures are frozen during one-shot learning to enhance the framework's robustness to novel attacks. To validate the effectiveness of our framework, we conducted extensive experimentation using publicly available benchmark intrusion detection data sets. Leveraging the one-shot learning approach in the transfer learning component of the framework, we demonstrate continuous improvement in detection accuracy for both known and novel network traffic patterns. The results demonstrate the effectiveness of the multiple stages in the framework by achieving, on average, 98.5% accuracy in detecting various attacks.
引用
收藏
页数:15
相关论文
共 50 条
  • [1] Network Intrusion Detection System using Deep Learning
    Ashiku, Lirim
    Dagli, Cihan
    BIG DATA, IOT, AND AI FOR A SMARTER FUTURE, 2021, 185 : 239 - 247
  • [2] Robust Network Security: A Deep Learning Approach to Intrusion Detection in IoT
    Odeh, Ammar
    Abu Taleb, Anas
    Computers, Materials and Continua, 2024, 81 (03): : 4149 - 4169
  • [3] A Novel Deep Learning Framework for Intrusion Detection Systems in Wireless Network
    Dang, Khoa Dinh Nguyen
    Fazio, Peppino
    Voznak, Miroslav
    FUTURE INTERNET, 2024, 16 (08)
  • [4] A deep learning framework for intrusion detection system in smart grids using graph convolutional network
    Basheer, Liloja
    Ranjana, P.
    ENGINEERING RESEARCH EXPRESS, 2025, 7 (01):
  • [5] A network intrusion detection system based on deep learning in the IoT
    Wang, Xiao
    Dai, Lie
    Yang, Guang
    JOURNAL OF SUPERCOMPUTING, 2024, 80 (16): : 24520 - 24558
  • [6] An Explainable Deep Learning Framework for Resilient Intrusion Detection in IoT-Enabled Transportation Networks
    Oseni, Ayodeji
    Moustafa, Nour
    Creech, Gideon
    Sohrabi, Nasrin
    Strelzoff, Andrew
    Tari, Zahir
    Linkov, Igor
    IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2023, 24 (01) : 1000 - 1014
  • [7] Adversarial Robust and Explainable Network Intrusion Detection Systems Based on Deep Learning
    Sauka, Kudzai
    Shin, Gun-Yoo
    Kim, Dong-Wook
    Han, Myung-Mook
    APPLIED SCIENCES-BASEL, 2022, 12 (13):
  • [8] A Deep Reinforcement Learning Approach for Anomaly Network Intrusion Detection System
    Hsu, Ying-Feng
    Matsuoka, Morito
    2020 IEEE 9TH INTERNATIONAL CONFERENCE ON CLOUD NETWORKING (CLOUDNET), 2020,
  • [9] An intelligent and efficient network intrusion detection system using deep learning
    Qazi, Emad-ul-Haq
    Imran, Muhammad
    Haider, Noman
    Shoaib, Muhammad
    Razzak, Imran
    COMPUTERS & ELECTRICAL ENGINEERING, 2022, 99
  • [10] On the Evaluation of Sequential Machine Learning for Network Intrusion Detection
    Corsini, Andrea
    Yang, Shanchieh Jay
    Apruzzese, Giovanni
    ARES 2021: 16TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, 2021,