Effective network intrusion detection using stacking-based ensemble approach

被引:9
|
作者
Ali, Muhammad [1 ,2 ]
Haque, Mansoor-ul [1 ,2 ]
Durad, Muhammad Hanif [1 ,2 ]
Usman, Anila [1 ]
Mohsin, Syed Muhammad [3 ,4 ]
Mujlid, Hana [5 ]
Maple, Carsten [6 ]
机构
[1] Pakistan Inst Engn & Appl Sci, Dept Comp & Informat Sci, Islamabad 45650, Pakistan
[2] Pakistan Inst Engn & Appl Sci, Crit Infrastruct Protect & Malware Anal Lab, Islamabad 45650, Pakistan
[3] COMSATS Univ Islamabad, Dept Comp Sci, Islamabad 45550, Pakistan
[4] Virtual Univ Pakistan, Coll Intellectual Novitiates COIN, Lahore 55150, Pakistan
[5] Taif Univ, Dept Comp Engn, Taif, Saudi Arabia
[6] Univ Warwick, Cyber Secur Ctr, Coventry, England
关键词
Machine learning; Intrusion detection system; Denial of service; Ensemble-based learning; CICIDS2017; GNS-3; Performance metrics; DETECTION SYSTEMS; ARTIFICIAL-INTELLIGENCE;
D O I
10.1007/s10207-023-00718-7
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The increasing demand for communication between networked devices connected either through an intranet or the internet increases the need for a reliable and accurate network defense mechanism. Network intrusion detection systems (NIDSs), which are used to detect malicious or anomalous network traffic, are an integral part of network defense. This research aims to address some of the issues faced by anomaly-based network intrusion detection systems. In this research, we first identify some limitations of the legacy NIDS datasets, including a recent CICIDS2017 dataset, which lead us to develop our novel dataset, CIPMAIDS2023-1. Then, we propose a stacking-based ensemble approach that outperforms the overall state of the art for NIDS. Various attack scenarios were implemented along with benign user traffic on the network topology created using graphical network simulator-3 (GNS-3). Key flow features are extracted using cicflowmeter for each attack and are evaluated to analyze their behavior. Several different machine learning approaches are applied to the features extracted from the traffic data, and their performance is compared. The results show that the stacking-based ensemble approach is the most promising and achieves the highest weighted F1-score of 98.24%.
引用
收藏
页码:1781 / 1798
页数:18
相关论文
共 50 条
  • [41] A homogeneous ensemble based dynamic artificial neural network for solving the intrusion detection problem
    Al-Daweri, Muataz Salam
    Abdullah, Salwani
    Ariffin, Khairul Akram Zainol
    INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2021, 34
  • [42] Enhancing Intrusion Detection Systems with Dimensionality Reduction and Multi-Stacking Ensemble Techniques
    Alsaffar, Ali Mohammed
    Nouri-Baygi, Mostafa
    Zolbanin, Hamed
    Algorithms, 2024, 17 (12)
  • [43] A New Model to Evaluate Signature and Anomaly Based Intrusion Detection in Medical IoT System Using Ensemble Approach
    A. Sheik Abdullah
    Hridhik John Sunil
    Mohamed Saleem Haja Nazmudeen
    SN Computer Science, 6 (4)
  • [44] GA-Stacking: A New Stacking-Based Ensemble Learning Method to Forecast the COVID-19 Outbreak
    Ismail, Walaa N.
    Alsalamah, Hessah A.
    Mohamed, Ebtesam
    CMC-COMPUTERS MATERIALS & CONTINUA, 2023, 74 (02): : 3945 - 3976
  • [45] STALLION: a stacking-based ensemble learning framework for prokaryotic lysine acetylation site prediction
    Basith, Shaherin
    Lee, Gwang
    Manavalan, Balachandran
    BRIEFINGS IN BIOINFORMATICS, 2022, 23 (01)
  • [46] Ensemble Model for Network Intrusion Detection System Based on Bagging Using J48
    Otoom, Mohammad Mahmood
    Sattar, Khalid Nazim Abdul
    Al Sadig, Mutasim
    ADVANCES IN SCIENCE AND TECHNOLOGY-RESEARCH JOURNAL, 2023, 17 (02) : 322 - 329
  • [47] Cortex-inspired ensemble based network intrusion detection system
    Ali Muhammad
    Iqbal Murtza
    Ayesha Saadia
    Kashif Kifayat
    Neural Computing and Applications, 2023, 35 : 15415 - 15428
  • [48] A novel ensemble learning-based model for network intrusion detection
    Ngamba Thockchom
    Moirangthem Marjit Singh
    Utpal Nandi
    Complex & Intelligent Systems, 2023, 9 : 5693 - 5714
  • [49] A novel ensemble learning-based model for network intrusion detection
    Thockchom, Ngamba
    Singh, Moirangthem Marjit
    Nandi, Utpal
    COMPLEX & INTELLIGENT SYSTEMS, 2023, 9 (05) : 5693 - 5714
  • [50] Cortex-inspired ensemble based network intrusion detection system
    Muhammad, Ali
    Murtza, Iqbal
    Saadia, Ayesha
    Kifayat, Kashif
    NEURAL COMPUTING & APPLICATIONS, 2023, 35 (21) : 15415 - 15428