PANDA: Practical Adversarial Attack Against Network Intrusion Detection

被引:1
作者
Swain, Subrat Kumar [1 ,2 ]
Kumar, Vireshwar [3 ]
Bai, Guangdong [1 ]
Kim, Dan Dongseong [1 ]
机构
[1] UQ, St Lucia, Qld, Australia
[2] IITD Res Acad, New Delhi, India
[3] Indian Inst Technol Delhi, New Delhi, India
来源
2024 54TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS-SUPPLEMENTAL VOLUME, DSN-S 2024 | 2024年
关键词
Adversarial Attacks; Robustness; NIDS; Network Security;
D O I
10.1109/DSN-S60304.2024.00017
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
While adversarial machine learning (AML) attacks have become prevalent in the computer vision (CV) domain, their applications in other domains, such as network intrusion detection systems (NIDS), remain limited. This gap stems from the lack of a well-defined input space in non-image domains, hindering the generation of adversarial examples. Unlike CV problems, where the input space is the feature space, other domains generally lack a precise inverse mapping from the feature space to the problem space. In this work, we propose PANDA, a novel approach that bridges this gap and enables AML attacks against NIDS. PANDA represents a series of packets as images for training a surrogate NIDS model. Benefiting from the invertibility of this representation, PANDA leverages well-evolved image-based AML attacks to generate adversarial examples against the surrogate model. It then repurposes the adversarial examples from the surrogate model to evade the target NIDS model. We demonstrate the effectiveness of PANDA by successfully crafting adversarial network intrusions with the UQ-IoT dataset. This work establishes a framework for transferring AML attacks from the CV domain to the network domain, opening new avenues for attack modelling and defence strategies in NIDS.
引用
收藏
页码:28 / 32
页数:5
相关论文
共 50 条
[41]   Utilizing Autoencoder to Improve the Robustness of Intrusion Detection Systems against Adversarial Attacks [J].
Kibenge-MacLeod, Patricia ;
Ye, Qiang ;
Cui, Fangda .
IEEE CONFERENCE ON GLOBAL COMMUNICATIONS, GLOBECOM, 2023, :970-975
[42]   Verifying the Robustness of Machine Learning based Intrusion Detection Against Adversarial Perturbation [J].
Nowroozi, Ehsan ;
Taheri, Rahim ;
Hajizadeh, Mehrdad ;
Bauschert, Thomas .
2024 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE, CSR, 2024, :9-15
[43]   Improving Intrusion Detection System Based on Snort Rules for Network Probe Attack Detection [J].
Khamphakdee, Nattawat ;
Benjamas, Nunnapus ;
Saiyod, Saiyan .
2014 2ND INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION TECHNOLOGY (ICOICT), 2014,
[44]   Adversarial Robust and Explainable Network Intrusion Detection Systems Based on Deep Learning [J].
Sauka, Kudzai ;
Shin, Gun-Yoo ;
Kim, Dong-Wook ;
Han, Myung-Mook .
APPLIED SCIENCES-BASEL, 2022, 12 (13)
[45]   VulnerGAN: a backdoor attack through vulnerability amplification against machine learning-based network intrusion detection systems [J].
Liu, Guangrui ;
Zhang, Weizhe ;
Li, Xinjie ;
Fan, Kaisheng ;
Yu, Shui .
SCIENCE CHINA-INFORMATION SCIENCES, 2022, 65 (07)
[46]   Defend against adversarial attacks in malware detection through attack space management [J].
Liu, Liang ;
Kuang, Xinyu ;
Liu, Lin ;
Zhang, Lei .
COMPUTERS & SECURITY, 2024, 141
[47]   Generative Adversarial Network-based Approach for Automated Generation of Adversarial Attacks Against a Deep-Learning based XSS Attack Detection Model [J].
Alaoui, Rokia Lamrani ;
Nfaoui, El Habib .
INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2023, 14 (07) :892-897
[48]   Defending Against Adversarial Attack Through Generative Adversarial Networks [J].
Song, Haoxian ;
Wang, Zichi ;
Zhang, Xinpeng .
IEEE SIGNAL PROCESSING LETTERS, 2025, 32 :1730-1734
[49]   Resisting Deep Learning Models Against Adversarial Attack Transferability via Feature Randomization [J].
Nowroozi, Ehsan ;
Mohammadi, Mohammadreza ;
Golmohammadi, Pargol ;
Mekdad, Yassine ;
Conti, Mauro ;
Uluagac, Selcuk .
IEEE TRANSACTIONS ON SERVICES COMPUTING, 2024, 17 (01) :18-29
[50]   Def-IDS: An Ensemble Defense Mechanism Against Adversarial Attacks for Deep Learning-based Network Intrusion Detection [J].
Wang, Jianyu ;
Pan, Jianli ;
AlQerm, Ismail ;
Liu, Yuanni .
30TH INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS (ICCCN 2021), 2021,