Hybrid Explainable Intrusion Detection System: Global vs. Local Approach

被引:0
|
作者
Tanuwidjaja, Harry Chandra [1 ]
Takahashi, Takeshi [1 ]
Lin, Tsung-Nan [2 ]
Lee, Boyi [3 ]
Ban, Tao [1 ]
机构
[1] Natl Inst Informat & Commun Technol, Tokyo, Japan
[2] Natl Taiwan Univ, Taipei, Taiwan
[3] Natl Appl Res Labs, Taipei, Taiwan
来源
PROCEEDINGS OF THE 2023 WORKSHOP ON RECENT ADVANCES IN RESILIENT AND TRUSTWORTHY ML SYSTEMS IN AUTONOMOUS NETWORKS, ARTMAN 2023 | 2023年
关键词
IDS; explanation; XAI; X-IDS; local interpretable model-agnostic explanations; Shapley additive explanation;
D O I
10.1145/3605772.3624004
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Intrusion Detection Systems (IDSs) play a major role in detecting suspicious activities and alerting users of potential malicious adversaries. Security operators investigate these alerts and attempt to mitigate the risks and damage. Many IDS-related studies have focused on improving detection accuracy and reducing false positives; however, the operators need to understand the rationale behind IDS engines issuing an alert. In contrast to conventional rule-based engines, machine-learning-based engines use a detection mechanism that is like a black box, i.e., it is not designed to indicate a rationale. In this paper, we introduce an explainable IDS (X-IDS) that copes with the well-used XAI techniques to ensure that the system can explain the decisions. To this end, we used local interpretable model-agnostic explanations and Shapley additive explanations, and we evaluated their differing characteristics. We proposed our explanation framework that consists of the variable importance plot, individual value plot, and partial dependence plot. Furthermore, we conclude by discussing future issues regarding better explainable IDS.
引用
收藏
页码:37 / 42
页数:6
相关论文
共 50 条
  • [31] A Fingerprinting System Calls Approach for Intrusion Detection in a Cloud Environment
    Gupta, Sanchika
    Sardana, Anjali
    Kumar, Padam
    Abraham, Ajith
    2012 FOURTH INTERNATIONAL CONFERENCE ON COMPUTATIONAL ASPECTS OF SOCIAL NETWORKS (CASON), 2012, : 309 - 314
  • [32] Intrusion detection System based on Hybrid Whale-Genetic Algorithm
    Bilaiya, Riya
    Sharma, Rajeev Mohan
    PROCEEDINGS OF THE 2018 SECOND INTERNATIONAL CONFERENCE ON INVENTIVE COMMUNICATION AND COMPUTATIONAL TECHNOLOGIES (ICICCT), 2018, : 822 - 825
  • [33] Experimental Analysis of Trustworthy In-Vehicle Intrusion Detection System Using eXplainable Artificial Intelligence (XAI)
    Lundberg, Hampus
    Mowla, Nishat, I
    Abedin, Sarder Fakhrul
    Thar, Kyi
    Mahmood, Aamir
    Gidlund, Mikael
    Raza, Shahid
    IEEE ACCESS, 2022, 10 : 102831 - 102841
  • [34] A hybrid machine learning framework for intrusion detection system in smart cities
    Gill, Komal Singh
    Dhillon, Arwinder
    EVOLVING SYSTEMS, 2024, 15 (06) : 2005 - 2019
  • [35] EX-DFL: An Explainable Deep Federated-based Intrusion Detection System for Industrial IoT
    Attique, Danish
    Hao, Wang
    Ping, Wang
    Javeed, Danish
    Adil, Muhammad
    2024 21ST INTERNATIONAL JOINT CONFERENCE ON COMPUTER SCIENCE AND SOFTWARE ENGINEERING, JCSSE 2024, 2024, : 358 - 364
  • [36] Performance Evaluation of Different Intrusion Detection System: An Empirical Approach
    Beigh, Bilal Maqbool
    Peer, M. A.
    2014 INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATION AND INFORMATICS (ICCCI), 2014,
  • [37] Hybrid intrusion detection system based on Dempster-Shafer evidence theory
    Qiu, Weicheng
    Ma, Yinghua
    Chen, Xiuzhen
    Yu, Haiyang
    Chen, Lixing
    COMPUTERS & SECURITY, 2022, 117
  • [38] A hybrid intrusion detection system with K-means and CNN+LSTM
    Lv, Haifeng
    Ding, Yong
    EAI ENDORSED TRANSACTIONS ON SCALABLE INFORMATION SYSTEMS, 2024, 11 (06):
  • [39] Composition of Hybrid Deep Learning Model and Feature Optimization for Intrusion Detection System
    Henry, Azriel
    Gautam, Sunil
    Khanna, Samrat
    Rabie, Khaled
    Shongwe, Thokozani
    Bhattacharya, Pronaya
    Sharma, Bhisham
    Chowdhury, Subrata
    SENSORS, 2023, 23 (02)
  • [40] A Hybrid Intrusion Detection System Based on Machine Learning under Differential Privacy Protection
    Shi, Jibo
    Lin, Yun
    Zhang, Zherui
    Yu, Shui
    2021 IEEE 94TH VEHICULAR TECHNOLOGY CONFERENCE (VTC2021-FALL), 2021,