Data Balancing and CNN based Network Intrusion Detection System

被引:5
作者
Elghalhoud, Omar [1 ]
Naik, Kshirasagar [1 ]
Zaman, Marzia [2 ]
Manzano, Ricardo S. [3 ]
机构
[1] Univ Waterloo, Dept Elect & Comp Engn, Waterloo, ON N2L 3G1, Canada
[2] Cistel Technol, 30 Concourse Gate, Ottawa, ON K2E 7V7, Canada
[3] Cistech Ltd, Ottawa, ON K2E 7K3, Canada
来源
2023 IEEE WIRELESS COMMUNICATIONS AND NETWORKING CONFERENCE, WCNC | 2023年
关键词
Network Security; Data Balancing; Machine Learning; Deep Learning; Convolutional Neural Networks;
D O I
10.1109/WCNC55385.2023.10118702
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber-security experts often require the help of an automated process that filters and classifies network attacks. To apply specific preventive measures for securing networks, the classification of the attack type is the key. Many Machine Learning (ML) models have been proposed as a base for Network Intrusion Detection (NID) systems. However, their performance varies based on multiple factors. For instance, an ML model fitted on a highly imbalanced dataset can be biased toward over-represented attack types. On the other hand, paying attention only to the ML model's performance in the minority classes can negatively affect its performance in the majority classes. This paper proposes an NID system that addresses the issue of imbalanced datasets and uses Convolutional Neural Networks (CNN) to classify the different attack types. We compare the performance of our proposed system to other systems that use: Random Over-Sampling (ROS), Synthetic Minority Oversampling TEchnique (SMOTE), Adaptive Synthetic Sampling (ADASYN), and Generative Adversarial Networks (GAN). Using the NSL-KDD and the BoT-IoT datasets for benchmarking, we show that our proposed system performs well in the minority classes: recall scores of 70.50% and 72.08% on the User to Root (U2R) and Remote to Local (R2L) attack classes of the NSL-KDD dataset, respectively, while maintaining an overall False Alarm Rate (FAR) of 6.50% and a recall of 90.46% on the binary classification task. Our proposed system scores a weighted average F1-Score of 99.45% on the multi-class classification task using the BoT-IoT dataset.
引用
收藏
页数:6
相关论文
共 50 条
  • [21] Joint Rough Set Theory and XGBoost-Based Learning for Network Intrusion Detection System
    Alsabilah, Nasser
    Rawat, Danda B.
    IEEE INTERNET OF THINGS JOURNAL, 2025, 12 (07): : 7930 - 7937
  • [22] Network Security Enhanced with Deep Neural Network-Based Intrusion Detection System
    Alrayes, Fatma S.
    Zakariah, Mohammed
    Amin, Syed Umar
    Khan, Zafar Iqbal
    Alqurni, Jehad Saad
    CMC-COMPUTERS MATERIALS & CONTINUA, 2024, 80 (01): : 1457 - 1490
  • [23] Network Intrusion Detection System based on Generative Adversarial Network for Attack Detection
    Das, Abhijit
    Balakrishnan, S. G.
    Pramod
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2021, 12 (11) : 757 - 766
  • [24] ProIDS: Probabilistic Data Structures based Intrusion Detection System for Network Traffic Monitoring
    Gupta, Divya
    Garg, Sahil
    Singh, Amritpal
    Batra, Shalini
    Kumar, Neeraj
    Obaidat, M. S.
    GLOBECOM 2017 - 2017 IEEE GLOBAL COMMUNICATIONS CONFERENCE, 2017,
  • [25] Clustering-Based Network Intrusion Detection System
    Fan, Chun-I
    Lai, Yen-Lin
    Shie, Cheng-Han
    2022 5TH IEEE CONFERENCE ON DEPENDABLE AND SECURE COMPUTING (IEEE DSC 2022), 2022,
  • [26] Intrusion detection system for controller area network
    Tanksale, Vinayak
    CYBERSECURITY, 2024, 7 (01)
  • [27] The development of intrusion detection system based on wavelet network
    Ji, Guang-Xian
    Advances in Information Sciences and Service Sciences, 2012, 4 (09): : 261 - 268
  • [28] Intrusion detection system for controller area network
    Vinayak Tanksale
    Cybersecurity, 7
  • [29] Feature dimensionality in CNN acceleration for high-throughput network intrusion detection
    Le Jeune, Laurens
    Goedeme, Toon
    Mentens, Nele
    2022 32ND INTERNATIONAL CONFERENCE ON FIELD-PROGRAMMABLE LOGIC AND APPLICATIONS, FPL, 2022, : 366 - 374
  • [30] Robust detection for network intrusion of industrial IoT based on multi-CNN fusion
    Li, Yanmiao
    Xu, Yingying
    Liu, Zhi
    Hou, Haixia
    Zheng, Yushuo
    Xin, Yang
    Zhao, Yuefeng
    Cui, Lizhen
    MEASUREMENT, 2020, 154