Ensemble Machine Learning Approach For Identifying Real-Time Threats In Security Operations Center

被引:0
|
作者
Femi-Oyewole, Favour [1 ]
Osamor, Victor [2 ]
Okunbor, Daniel [3 ]
机构
[1] Covenant University, Km 10 Ota. Ogun State, Nigeria
[2] Computer and Information Sciences, Covenant University, Km 10 Ota. Ogun State, Nigeria
[3] Mathematics and Computer Science, Rice University, Fayetteville State University, Fayetteville,CA, United States
关键词
Adversarial machine learning - Cyber attacks - Intrusion detection - Network intrusion - Network security;
D O I
暂无
中图分类号
学科分类号
摘要
Cyberattacks can be avoided if threats are identified in advance and robust cybersecurity measures are in place to protect infrastructures. However, in recent years, cyber threats and data breaches have become more prevalent, exploiting vulnerabilities and causing significant financial damage and organizational harm. This often involves compromising sensitive personal information, emphasizing the need for proactive defence strategies led by experienced security professionals. Traditional methods of threat detection involve laborious log analysis due to the multitude of logs generated by network devices. However, ensemble machine learning techniques offer automation within intrusion detection systems, streamlining the threat detection process. This study investigates various ensemble methods, such as blending and stacking, to enhance detection capabilities, both manually and automatically identifying potential cyber threats. The methodology involves implementing a stacking blending ensemble model and conducting feature selection to improve performance. Additionally, a web application interface is developed using the Python Flask web framework to facilitate model deployment and management. Evaluation includes testing on real production network traffic and the CICIDS2017 Thursday-WorkingHours-Morning dataset, with intentional web attacks executed to assess system effectiveness. The ensemble model is evaluated using the Thursday Morning Dataset, achieving high precision, recall, and F1-score of 0.99, with an overall accuracy of 99% in binary classification tasks. These results validate the model’s robustness and effectiveness in identifying real-time network traffic patterns and potential security incidents, demonstrating its potential to enhance cybersecurity measures. © (2024), (International Association of Engineers). All rights reserved.
引用
收藏
页码:2094 / 2122
相关论文
共 50 条
  • [31] Data-Triggered Approach for Real-Time Machine Learning in IoT Systems
    Cheng, Tou
    Coulibaly, Falla
    Patooghy, Ahmad
    Kursun, Olcay
    2020 IEEE 63RD INTERNATIONAL MIDWEST SYMPOSIUM ON CIRCUITS AND SYSTEMS (MWSCAS), 2020, : 101 - 104
  • [32] Intelligent-based ensemble deep learning model for security improvement in real-time wireless communication
    Zhen, S.
    Surender, R.
    Dhiman, Gaurav
    Rani, K. Radha
    Ashifa, K. M.
    Reegu, Faheem Ahmad
    OPTIK, 2022, 271
  • [33] Machine Learning Security: Threats, Countermeasures, and Evaluations
    Xue, Mingfu
    Yuan, Chengxiang
    Wu, Heyi
    Zhang, Yushu
    Liu, Weiqiang
    IEEE ACCESS, 2020, 8 : 74720 - 74742
  • [34] A User-Centric Machine Learning Framework for Cyber Security Operations Center
    Feng, Charles
    Wu, Shuning
    Liu, Ningwei
    2017 IEEE INTERNATIONAL CONFERENCE ON INTELLIGENCE AND SECURITY INFORMATICS (ISI), 2017, : 173 - 175
  • [35] Enhancing Email Security: A Real-Time Machine Learning-Based Spam Detection System
    Yadav, Dharmveer Kumar
    Raj, Abhishek
    Rajlakshmi, Neeraj
    Kumar, Neeraj
    Kumari, Ritu
    INTERNET TECHNOLOGY LETTERS, 2024,
  • [36] Rapid correction of near real-time FY-4A retrieval based on ensemble machine learning
    Lyu Y.
    Yong B.
    Shen Z.
    Li J.
    Mei J.
    National Remote Sensing Bulletin, 2024, 28 (03) : 677 - 688
  • [37] Deep ensemble learning-based approach to real-time power system state estimation
    Bhusal, Narayan
    Shukla, Raj Mani
    Gautam, Mukesh
    Benidris, Mohammed
    Sengupta, Shamik
    INTERNATIONAL JOURNAL OF ELECTRICAL POWER & ENERGY SYSTEMS, 2021, 129
  • [38] AN APPROACH TO REAL-TIME REACTIVE MONITORING FOR SYSTEM SECURITY
    FOX, TH
    MANSOUR, MO
    PRESTON, EH
    WILLSON, JD
    WODYKA, RA
    IEEE TRANSACTIONS ON POWER APPARATUS AND SYSTEMS, 1983, 102 (11): : 3687 - 3692
  • [39] Evidential Ensemble Preference-Guided Learning Approach for Real-Time Multimode Fault Diagnosis
    Liu, Zeyi
    Li, Chen
    He, Xiao
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2024, 20 (04) : 5495 - 5504
  • [40] Assessing Real-time Malware Threats
    Gander, Matthias
    Sauerwein, Clemens
    Breu, Ruth
    2015 IEEE INTERNATIONAL CONFERENCE ON SOFTWARE QUALITY, RELIABILITY AND SECURITY - COMPANION (QRS-C 2015), 2015, : 6 - 13