A sequential deep learning framework for a robust and resilient network intrusion detection system

被引:6
|
作者
Hore, Soumyadeep [1 ]
Ghadermazi, Jalal [1 ]
Shah, Ankit [1 ]
Bastian, Nathaniel D. [2 ]
机构
[1] Univ S Florida, Dept Ind & Management Syst Engn, Tampa, FL 33620 USA
[2] United States Mil Acad, Army Cyber Inst, West Point, NY 10996 USA
关键词
Network intrusion detection system (NIDS); Multistage AI-based NIDS; Malicious packet classifier; Anomaly detector; Novelty detector; Sequential deep neural networks; One-shot learning; Transfer learning;
D O I
10.1016/j.cose.2024.103928
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Ensuring the security and integrity of computer and network systems is of utmost importance in today's digital landscape. Network intrusion detection systems (NIDS) play a critical role in continuously monitoring network traffic and identifying unauthorized or potentially malicious activities that could compromise the confidentiality, availability, and integrity of these systems. However, traditional NIDS face a daunting challenge in effectively adapting to the evolving tactics of cyber attackers. To address this challenge, we propose a multistage artificial intelligence enabled framework for intrusion detection in network traffic, capable of handling zero-day, out -of -distribution, and adversarial evasion attacks. Our framework comprises three sequential deep neural network (DNN) architectures: one for the classifier and two for specific autoencoders, designed to effectively detect both known attack patterns and novel, previously unseen samples. We introduce an innovative transfer learning technique where specific combinations of neurons and layers in the DNN architectures are frozen during one-shot learning to enhance the framework's robustness to novel attacks. To validate the effectiveness of our framework, we conducted extensive experimentation using publicly available benchmark intrusion detection data sets. Leveraging the one-shot learning approach in the transfer learning component of the framework, we demonstrate continuous improvement in detection accuracy for both known and novel network traffic patterns. The results demonstrate the effectiveness of the multiple stages in the framework by achieving, on average, 98.5% accuracy in detecting various attacks.
引用
收藏
页数:15
相关论文
共 50 条
  • [21] Conditional Generative Adversarial Network for Intrusion Detection System Based on Deep Learning
    Huang, Zhen
    Xiang, Yong
    2024 16TH INTERNATIONAL CONFERENCE ON COMPUTER AND AUTOMATION ENGINEERING, ICCAE 2024, 2024, : 237 - 241
  • [22] Evaluating Deep Learning Based Network Intrusion Detection System in Adversarial Environment
    Peng, Ye
    Su, Jinshu
    Shi, Xiangquan
    Zhao, Baokang
    PROCEEDINGS OF 2019 IEEE 9TH INTERNATIONAL CONFERENCE ON ELECTRONICS INFORMATION AND EMERGENCY COMMUNICATION (ICEIEC 2019), 2019, : 61 - 66
  • [23] Deep learning model for intrusion detection system utilizing convolution neural network
    Kamil, Waad Falah
    Mohammed, Imad Jasim
    OPEN ENGINEERING, 2023, 13 (01):
  • [24] An anomaly-based Network Intrusion Detection System using Deep learning
    Nguyen Thanh Van
    Tran Ngoc Thinh
    Le Thanh Sach
    2017 INTERNATIONAL CONFERENCE ON SYSTEM SCIENCE AND ENGINEERING (ICSSE), 2017, : 210 - 214
  • [25] Real-Time Network Intrusion Detection System Based on Deep Learning
    Dong, Yuansheng
    Wang, Rong
    He, Juan
    PROCEEDINGS OF 2019 IEEE 10TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING AND SERVICE SCIENCE (ICSESS 2019), 2019, : 1 - 4
  • [26] A Network Intrusion Detection System Using Hybrid Multilayer Deep Learning Model
    Umair, Muhammad Basit
    Iqbal, Zeshan
    Faraz, Muhammad Ahmad
    Khan, Muhammad Attique
    Zhang, Yu-Dong
    Razmjooy, Navid
    Kadry, Sefedine
    BIG DATA, 2024, 12 (05) : 367 - 376
  • [27] Network intrusion detection methods based on deep learning
    Li X.
    Zhang S.
    Recent Patents on Engineering, 2021, 15 (04):
  • [28] Deep Learning Applications for Intrusion Detection in Network Traffic
    Getman, A. I.
    Rybolovlev, D. A.
    Nikolskaya, A. G.
    PROGRAMMING AND COMPUTER SOFTWARE, 2024, 50 (07) : 493 - 510
  • [29] Deep Learning for Network Intrusion Detection in Virtual Networks
    Spiekermann, Daniel
    Eggendorfer, Tobias
    Keller, Joerg
    ELECTRONICS, 2024, 13 (18)
  • [30] Robust Network Intrusion Detection System Based on Machine-Learning With Early Classification
    Kim, Taehoon
    Pak, Wooguil
    IEEE ACCESS, 2022, 10 : 10754 - 10767