A sequential deep learning framework for a robust and resilient network intrusion detection system

被引:6
|
作者
Hore, Soumyadeep [1 ]
Ghadermazi, Jalal [1 ]
Shah, Ankit [1 ]
Bastian, Nathaniel D. [2 ]
机构
[1] Univ S Florida, Dept Ind & Management Syst Engn, Tampa, FL 33620 USA
[2] United States Mil Acad, Army Cyber Inst, West Point, NY 10996 USA
关键词
Network intrusion detection system (NIDS); Multistage AI-based NIDS; Malicious packet classifier; Anomaly detector; Novelty detector; Sequential deep neural networks; One-shot learning; Transfer learning;
D O I
10.1016/j.cose.2024.103928
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Ensuring the security and integrity of computer and network systems is of utmost importance in today's digital landscape. Network intrusion detection systems (NIDS) play a critical role in continuously monitoring network traffic and identifying unauthorized or potentially malicious activities that could compromise the confidentiality, availability, and integrity of these systems. However, traditional NIDS face a daunting challenge in effectively adapting to the evolving tactics of cyber attackers. To address this challenge, we propose a multistage artificial intelligence enabled framework for intrusion detection in network traffic, capable of handling zero-day, out -of -distribution, and adversarial evasion attacks. Our framework comprises three sequential deep neural network (DNN) architectures: one for the classifier and two for specific autoencoders, designed to effectively detect both known attack patterns and novel, previously unseen samples. We introduce an innovative transfer learning technique where specific combinations of neurons and layers in the DNN architectures are frozen during one-shot learning to enhance the framework's robustness to novel attacks. To validate the effectiveness of our framework, we conducted extensive experimentation using publicly available benchmark intrusion detection data sets. Leveraging the one-shot learning approach in the transfer learning component of the framework, we demonstrate continuous improvement in detection accuracy for both known and novel network traffic patterns. The results demonstrate the effectiveness of the multiple stages in the framework by achieving, on average, 98.5% accuracy in detecting various attacks.
引用
收藏
页数:15
相关论文
共 50 条
  • [31] Sequential Model Based Intrusion Detection System for IoT Servers Using Deep Learning Methods
    Zhong, Ming
    Zhou, Yajin
    Chen, Gang
    SENSORS, 2021, 21 (04) : 1 - 21
  • [32] A Real-Time Sequential Deep Extreme Learning Machine Cybersecurity Intrusion Detection System
    Haider, Amir
    Khan, Muhammad Adnan
    Rehman, Abdur
    Rahman, Muhib Ur
    Kim, Hyung Seok
    CMC-COMPUTERS MATERIALS & CONTINUA, 2021, 66 (02): : 1785 - 1798
  • [33] DeepRoughNetID: A Robust Framework for Network Anomaly Intrusion Detection with High Detection Rates
    Nalini, M.
    Yamini, B.
    Sinthia, P.
    Kamala, Praveena Rachel S.
    IETE JOURNAL OF RESEARCH, 2024, 70 (09) : 7137 - 7148
  • [34] An Enhanced Resilient Backpropagation Artificial Neural Network for Intrusion Detection System
    Naoum, Reyadh Shaker
    Abid, Namh Abdula
    Al-Sultani, Zainab Namh
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2012, 12 (03): : 11 - 16
  • [35] An Enhanced Resilient Backpropagation Artificial Neural Network for Intrusion Detection System
    Naoum, Reyadh Shaker
    Abid, Namh Abdula
    Al-Sultani, Zainab Namh
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2013, 13 (03): : 98 - 104
  • [36] Deep-Full-Range: A Deep Learning Based Network Encrypted Traffic Classification and Intrusion Detection Framework
    Zeng, Yi
    Gu, Huaxi
    Wei, Wenting
    Guo, Yantao
    IEEE ACCESS, 2019, 7 : 45182 - 45190
  • [37] HDLIDP: A Hybrid Deep Learning Intrusion Detection and Prevention Framework
    Fadel, Magdy M.
    El-Ghamrawy, Sally M.
    Ali-Eldin, Amr M. T.
    Hassan, Mohammed K.
    El-Desoky, Ali, I
    CMC-COMPUTERS MATERIALS & CONTINUA, 2022, 73 (02): : 2293 - 2312
  • [38] A decisional framework system for computer network intrusion detection
    Fessi, B. A.
    Hamdi, M.
    Benabdallah, S.
    Boudriga, N.
    EUROPEAN JOURNAL OF OPERATIONAL RESEARCH, 2007, 177 (03) : 1824 - 1838
  • [39] A deep learning approach to network intrusion detection using deep autoencoder
    Moraboena S.
    Ketepalli G.
    Ragam P.
    Rev. Intell. Artif., 4 (457-463): : 457 - 463
  • [40] Robust anomaly-based intrusion detection system for in-vehicle network by graph neural network framework
    Junchao Xiao
    Lin Yang
    Fuli Zhong
    Hongbo Chen
    Xiangxue Li
    Applied Intelligence, 2023, 53 : 3183 - 3206