Data Balancing and CNN based Network Intrusion Detection System

被引:4
|
作者
Elghalhoud, Omar [1 ]
Naik, Kshirasagar [1 ]
Zaman, Marzia [2 ]
Manzano, Ricardo S. [3 ]
机构
[1] Univ Waterloo, Dept Elect & Comp Engn, Waterloo, ON N2L 3G1, Canada
[2] Cistel Technol, 30 Concourse Gate, Ottawa, ON K2E 7V7, Canada
[3] Cistech Ltd, Ottawa, ON K2E 7K3, Canada
来源
2023 IEEE WIRELESS COMMUNICATIONS AND NETWORKING CONFERENCE, WCNC | 2023年
关键词
Network Security; Data Balancing; Machine Learning; Deep Learning; Convolutional Neural Networks;
D O I
10.1109/WCNC55385.2023.10118702
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber-security experts often require the help of an automated process that filters and classifies network attacks. To apply specific preventive measures for securing networks, the classification of the attack type is the key. Many Machine Learning (ML) models have been proposed as a base for Network Intrusion Detection (NID) systems. However, their performance varies based on multiple factors. For instance, an ML model fitted on a highly imbalanced dataset can be biased toward over-represented attack types. On the other hand, paying attention only to the ML model's performance in the minority classes can negatively affect its performance in the majority classes. This paper proposes an NID system that addresses the issue of imbalanced datasets and uses Convolutional Neural Networks (CNN) to classify the different attack types. We compare the performance of our proposed system to other systems that use: Random Over-Sampling (ROS), Synthetic Minority Oversampling TEchnique (SMOTE), Adaptive Synthetic Sampling (ADASYN), and Generative Adversarial Networks (GAN). Using the NSL-KDD and the BoT-IoT datasets for benchmarking, we show that our proposed system performs well in the minority classes: recall scores of 70.50% and 72.08% on the User to Root (U2R) and Remote to Local (R2L) attack classes of the NSL-KDD dataset, respectively, while maintaining an overall False Alarm Rate (FAR) of 6.50% and a recall of 90.46% on the binary classification task. Our proposed system scores a weighted average F1-Score of 99.45% on the multi-class classification task using the BoT-IoT dataset.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] A Novel Network Intrusion Detection System Based on CNN
    Chen, Lin
    Kuang, Xiaoyun
    Xu, Aidong
    Suo, Siliang
    Yang, Yiwei
    2020 EIGHTH INTERNATIONAL CONFERENCE ON ADVANCED CLOUD AND BIG DATA (CBD 2020), 2020, : 243 - 247
  • [2] A New Data-Balancing Approach Based on Generative Adversarial Network for Network Intrusion Detection System
    Jamoos, Mohammad
    Mora, Antonio M.
    AlKhanafseh, Mohammad
    Surakhi, Ola
    ELECTRONICS, 2023, 12 (13)
  • [3] Network intrusion detection based on BiSRU and CNN
    Ding, Shanshuo
    Wang, Yingxin
    Kou, Liang
    2021 IEEE 18TH INTERNATIONAL CONFERENCE ON MOBILE AD HOC AND SMART SYSTEMS (MASS 2021), 2021, : 145 - 147
  • [4] Packet Preprocessing in CNN-Based Network Intrusion Detection System
    Jo, Wooyeon
    Kim, Sungjin
    Lee, Changhoon
    Shon, Taeshik
    ELECTRONICS, 2020, 9 (07) : 1 - 15
  • [5] An Improved CNN Approach for Network Intrusion Detection System
    Hu, Jianwei
    Liu, Chenshuo
    Cui, Yanpeng
    International Journal of Network Security, 2021, 23 (04) : 569 - 575
  • [6] Network Intrusion Detection Model Based on CNN and GRU
    Cao, Bo
    Li, Chenghai
    Song, Yafei
    Qin, Yueyi
    Chen, Chen
    APPLIED SCIENCES-BASEL, 2022, 12 (09):
  • [7] A Network Intrusion Detection Method Based on CNN and CBAM
    Liu, Yang
    Kang, Jian
    Li, Yiran
    Ji, Bin
    IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (IEEE INFOCOM WKSHPS 2021), 2021,
  • [8] A Survey of CNN-Based Network Intrusion Detection
    Mohammadpour, Leila
    Ling, Teck Chaw
    Liew, Chee Sun
    Aryanfar, Alihossein
    APPLIED SCIENCES-BASEL, 2022, 12 (16):
  • [9] Intrusion detection system based on load balancing
    Li, Ren-Fa
    Li, Hong
    Yu, Fei
    Xu, Cheng
    Xitong Fangzhen Xuebao / Journal of System Simulation, 2004, 16 (07):
  • [10] Data-Balancing Algorithm Based on Generative Adversarial Network for Robust Network Intrusion Detection
    Liu, I-Hsien
    Hsieh, Cheng-En
    Lin, Wei -Min
    Li, Jung-Shian
    Li, Chu -Fen
    JOURNAL OF ROBOTICS NETWORKING AND ARTIFICIAL LIFE, 2022, 9 (03): : 303 - 308