A Few-Shot Class-Incremental Learning Method for Network Intrusion Detection

被引:13
作者
Du, Lei [1 ,2 ]
Gu, Zhaoquan [1 ,2 ]
Wang, Ye [1 ,3 ]
Wang, Le [4 ]
Jia, Yan [1 ,2 ]
机构
[1] Harbin Inst Technol, Sch Comp Sci & Technol, Shenzhen 518055, Guangdong, Peoples R China
[2] Dept New Networks, Peng Cheng Lab, Shenzhen 518055, Guangdong, Peoples R China
[3] Natl Univ Def Technol, Coll Comp, Changsha 410073, Peoples R China
[4] Guangzhou Univ, Cyberspace Inst Adv Technol, Guangzhou 510006, Peoples R China
来源
IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT | 2024年 / 21卷 / 02期
基金
中国国家自然科学基金;
关键词
Feature extraction; Network intrusion detection; Power capacitors; Telecommunication traffic; Training; Task analysis; Prototypes; Cyber security; network intrusion detection; few-shot class-incremental learning;
D O I
10.1109/TNSM.2023.3332284
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the rapid development of information technologies, the security of cyberspace has become increasingly serious. Network intrusion detection is a practical scheme to protect network systems from cyber attacks. However, as new vulnerabilities and unknown attack types are constantly emerging, only a few samples of such attacks can be captured for analysis, which cannot be handled by the existing detection methods deployed in real systems. To handle this problem, we propose a few-shot class-incremental learning method called Branch Fusion Strategy based Network Intrusion Detection (BFS-NID for short), which can continuously learn new attack classes with only a few samples. BFS-NID includes a feature extractor module and a branch classifier learning module. The feature extractor module uses a vision transformer to learn better feature representations in a self-supervised manner, and the parameters of the feature extractor are fixed to avoid catastrophic forgetting when the model learns incrementally. The branch classifier learning module sets re-projection for different branch sessions to enhance the feature representation ability between classes and employs a branch fusion strategy to associate the context of learned attack classes with new classes in different sessions. We conducted extensive experiments on two popular network intrusion detection benchmark datasets (CIC-IDS2017 and CSE-CIC-IDS2018) and the results demonstrate that BFS-NID surpasses the baselines and achieves the best performance.
引用
收藏
页码:2389 / 2401
页数:13
相关论文
共 50 条
  • [1] Few-Shot Class-Incremental Learning for Network Intrusion Detection Systems
    Di Monda, Davide
    Montieri, Antonio
    Persico, Valerio
    Voria, Pasquale
    De Ieso, Matteo
    Pescape, Antonio
    IEEE OPEN JOURNAL OF THE COMMUNICATIONS SOCIETY, 2024, 5 : 6736 - 6757
  • [2] Memorizing Complementation Network for Few-Shot Class-Incremental Learning
    Ji, Zhong
    Hou, Zhishen
    Liu, Xiyao
    Pang, Yanwei
    Li, Xuelong
    IEEE TRANSACTIONS ON IMAGE PROCESSING, 2023, 32 : 937 - 948
  • [3] Learnable Distribution Calibration for Few-Shot Class-Incremental Learning
    Liu, Binghao
    Yang, Boyu
    Xie, Lingxi
    Wang, Ren
    Tian, Qi
    Ye, Qixiang
    IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2023, 45 (10) : 12699 - 12706
  • [4] Model Attention Expansion for Few-Shot Class-Incremental Learning
    Wang, Xuan
    Ji, Zhong
    Yu, Yunlong
    Pang, Yanwei
    Han, Jungong
    IEEE TRANSACTIONS ON IMAGE PROCESSING, 2024, 33 : 4419 - 4431
  • [5] Few-Shot Class-Incremental Learning by Sampling Multi-Phase Tasks
    Zhou, Da-Wei
    Ye, Han-Jia
    Ma, Liang
    Xie, Di
    Pu, Shiliang
    Zhan, De-Chuan
    IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2023, 45 (11) : 12816 - 12831
  • [6] A Method of Few-Shot Network Intrusion Detection Based on Meta-Learning Framework
    Xu, Congyuan
    Shen, Jizhong
    Du, Xin
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2020, 15 : 3540 - 3552
  • [7] Dynamic Support Network for Few-Shot Class Incremental Learning
    Yang, Boyu
    Lin, Mingbao
    Zhang, Yunxiao
    Liu, Binghao
    Liang, Xiaodan
    Ji, Rongrong
    Ye, Qixiang
    IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2023, 45 (03) : 2945 - 2951
  • [8] Few-Shot Class-Incremental Learning for Classification and Object Detection: A Survey
    Zhang, Jinghua
    Liu, Li
    Silven, Olli
    Pietikainen, Matti
    Hu, Dewen
    IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2025, 47 (04) : 2924 - 2945
  • [9] On the Approximation Risk of Few-Shot Class-Incremental Learning
    Wang, Xuan
    Ji, Zhong
    Liu, Xiyao
    Pang, Yanwei
    Han, Jungong
    COMPUTER VISION - ECCV 2024, PT LI, 2025, 15109 : 162 - 178
  • [10] Learning to complement: Relation complementation network for few-shot class-incremental learning
    Wang, Ye
    Wang, Yaxiong
    Zhao, Guoshuai
    Qian, Xueming
    KNOWLEDGE-BASED SYSTEMS, 2023, 282