Network intrusion detection based on multi-domain data and ensemble-bidirectional LSTM

被引:13
作者
Wang, Xiaoning [1 ]
Liu, Jia [2 ]
Zhang, Chunjiong [3 ]
机构
[1] Chongqing Vocat Inst Tourism, Chongqing 409099, Peoples R China
[2] Chongqing Coll Elect Engn, Chongqing, Peoples R China
[3] Tongji Univ, Coll Elect & Informat Engn, Shanghai 201804, Peoples R China
关键词
Anomaly detection; Attention mechanism; Bidirectional LSTM; Multi-domain learning; ANOMALY DETECTION; NEURAL-NETWORK; MECHANISM;
D O I
10.1186/s13635-023-00139-y
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Different types of network traffic can be treated as data originating from different domains with the same objectives of problem-solving. Previous work utilizing multi-domain machine learning has primarily assumed that data in different domains have the same distribution, which fails to effectively address the domain offset problem and may not achieve excellent performance in every domain. To address these limitations, this study proposes an attention-based bidirectional long short-term memory (Bi-LSTM) model for detecting coordinated network attacks, such as malware detection, VPN encapsulation recognition, and Trojan horse classification. To begin, HTTP traffic is modeled as a series of natural language sequences, where each request follows strict structural standards and language logic. The Bi-LSTM model is designed within the framework of multi-domain machine learning technologies to recognize anomalies of network attacks from different domains. Experiments on real HTTP traffic data sets demonstrate that the proposed model has good performance in detecting abnormal network traffic and exhibits strong generalization ability, enabling it to effectively detect different network attacks simultaneously.
引用
收藏
页数:14
相关论文
共 34 条
[31]   A deep learning approach for detecting traffic accidents from social media data [J].
Zhang, Zhenhua ;
He, Qing ;
Gao, Jing ;
Ni, Ming .
TRANSPORTATION RESEARCH PART C-EMERGING TECHNOLOGIES, 2018, 86 :580-596
[32]  
Zhenping Shi, 2019, 2019 IEEE 21st International Conference on High Performance Computing and Communications
[33]  
IEEE 17th International Conference on Smart City
[34]  
IEEE 5th International Conference on Data Science and Systems (HPCC/SmartCity/DSS). Proceedings, P2403, DOI 10.1109/HPCC/SmartCity/DSS.2019.00335