A gradient-based approach for adversarial attack on deep learning-based network intrusion detection systems

被引:30
|
作者
Mohammadian, Hesamodin [1 ]
Ghorbani, Ali A. [1 ]
Lashkari, Arash Habibi [2 ]
机构
[1] Univ New Brunswick, Canadian Inst Cybersecur, Fredericton, NB, Canada
[2] York Univ, Sch Informat Technol, Toronto, ON, Canada
关键词
Network intrusion detection; Network traffic classification; Deep learning; Machine learning; Adversarial attack;
D O I
10.1016/j.asoc.2023.110173
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Intrusion detection systems are an essential part of any cybersecurity architecture. These systems are critical in defending networks against a variety of security threats. In recent years, deep neural networks have proved their performance and efficiency in various machine learning tasks, including intrusion detection. However, it is shown that deep learning models are highly vulnerable to adver-sarial attacks. This paper proposes a new approach for performing an adversarial attack against deep learning-based malicious network activity classification. We use the Jacobian Saliency Map to find the best group of features, with different features and perturbation magnitude, to generate adversarial examples. We evaluate our method on three CIC-IDS2017, CIC-IDS2018, and CIC-DDoS2019 datasets. Our experiments show that our proposed method can achieve better performance while using fewer features in adversarial sample generation than other attacks that depend on a higher number of features. Our technique can generate adversarial samples for more than 18% of samples in CIC-IDS2017, 15% of samples in CIC-IDS2018, and 14% of samples in CIC-DDoS2019, using only three features and 0.1 as the perturbation magnitude. We do a deeper analysis of the attack based on its parameters, distance metrics, and the target model performance. Also, an evaluation model with three criteria, including success rates of the best feature sets, average confidence of the adversarial class, and adversarial samples transferability, is used in our analysis.(c) 2023 Elsevier B.V. All rights reserved.
引用
收藏
页数:15
相关论文
共 50 条
  • [1] Adversarial Attacks Against Deep Learning-Based Network Intrusion Detection Systems and Defense Mechanisms
    Zhang, Chaoyun
    Costa-Perez, Xavier
    Patras, Paul
    IEEE-ACM TRANSACTIONS ON NETWORKING, 2022, 30 (03) : 1294 - 1311
  • [2] Gradient-based Adversarial Attack Detection via Deep Feature Extraction
    Michel, Andy
    Ewetz, Rickard
    SOUTHEASTCON 2022, 2022, : 213 - 220
  • [3] Evading Deep Reinforcement Learning-based Network Intrusion Detection with Adversarial Attacks
    Merzouk, Mohamed Amine
    Delas, Josephine
    Neal, Christopher
    Cuppens, Frederic
    Boulahia-Cuppens, Nora
    Yaich, Reda
    PROCEEDINGS OF THE 17TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, ARES 2022, 2022,
  • [4] Adversarial robustness of deep reinforcement learning-based intrusion detection
    Merzouk, Mohamed Amine
    Neal, Christopher
    Delas, Josephine
    Yaich, Reda
    Boulahia-Cuppens, Nora
    Cuppens, Frederic
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2024, 23 (06) : 3625 - 3651
  • [5] ZeekFlow: Deep Learning-Based Network Intrusion Detection a Multimodal Approach
    Giagkos, Dimitrios
    Kompougias, Orestis
    Litke, Antonis
    Papadakis, Nikolaos
    COMPUTER SECURITY. ESORICS 2023 INTERNATIONAL WORKSHOPS, CPS4CIP, PT II, 2024, 14399 : 409 - 425
  • [6] Adversarial Robust and Explainable Network Intrusion Detection Systems Based on Deep Learning
    Sauka, Kudzai
    Shin, Gun-Yoo
    Kim, Dong-Wook
    Han, Myung-Mook
    APPLIED SCIENCES-BASEL, 2022, 12 (13):
  • [7] Adversarial Examples Against the Deep Learning Based Network Intrusion Detection Systems
    Yang, Kaichen
    Liu, Jianqing
    Zhang, Chi
    Fang, Yuguang
    2018 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM 2018), 2018, : 559 - 564
  • [8] A composite manifold learning approach with traditional methods for gradient-based and patch-based adversarial attack detection
    Agrawal K.
    Bhatnagar C.
    Multimedia Tools and Applications, 2024, 83 (39) : 87019 - 87044
  • [9] Gradient-Based Edge Effects on Lane Marking Detection using a Deep Learning-Based Approach
    Zakaria, Noor Jannah
    Shapiai, Mohd Ibrahim
    Fauzi, Hilman
    Elhawary, Hossamelden Mohamed Amin
    Yahya, Wira Jazair
    Abdul Rahman, Mohd Azizi
    Abu Kassim, Khairil Anwar
    Bahiuddin, Irfan
    Mohammed Ariff, Mohd Hatta
    ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2020, 45 (12) : 10989 - 11006
  • [10] Gradient-Based Edge Effects on Lane Marking Detection using a Deep Learning-Based Approach
    Noor Jannah Zakaria
    Mohd Ibrahim Shapiai
    Hilman Fauzi
    Hossamelden Mohamed Amin Elhawary
    Wira Jazair Yahya
    Mohd Azizi Abdul Rahman
    Khairil Anwar Abu Kassim
    Irfan Bahiuddin
    Mohd Hatta Mohammed Ariff
    Arabian Journal for Science and Engineering, 2020, 45 : 10989 - 11006