ELAT: Ensemble Learning with Adversarial Training in defending against evaded intrusions

被引:5
|
作者
Lin, Ying-Dar [1 ]
Pratama, Jehoshua-Hanky [1 ]
Sudyana, Didik [1 ]
Lai, Yuan-Cheng [2 ]
Hwang, Ren-Hung [3 ]
Lin, Po-Ching [4 ]
Lin, Hsuan-Yu [5 ]
Lee, Wei-Bin [6 ]
Chiang, Chen-Kuo [4 ]
机构
[1] Natl Yang Ming Chiao Tung Univ, Hsinchu 300, Taiwan
[2] Natl Taiwan Univ Sci & Technol, Taipei 106, Taiwan
[3] Natl Yang Ming Chiao Tung Univ, Tainan 711, Taiwan
[4] Natl Chung Cheng Univ, Chiayi 621, Taiwan
[5] Telecom Technol Ctr, New Taipei City, Taiwan
[6] Foxconn Res, New Taipei City, Taiwan
关键词
Adversarial attack; Machine learning; Intrusion detection; Ensemble learning; ATTACKS;
D O I
10.1016/j.jisa.2022.103348
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Network intrusion detection systems (NIDSs) now adopt machine learning (ML) for detection of wide attack variants. However, ML is also known vulnerable to adversarial attacks, which can degrade the accuracy of ML. A number of defense strategies have been proposed but mostly in image classification areas. In this work, we propose Ensemble Learning with Adversarial Training (ELAT) to combine adversarial training and ensemble learning into a solution. We compare four approaches: single, ensemble, adversarial and ELAT. In the experiments, several models were developed and tested using different approaches to know which method is robust against adversarial attacks for ML-based NIDSs. The average F1 score for the single models was 0.93 within a wide range (0.82-0.99), but dropped to 0.29 when facing adversarial attacks, particularly dropped to 0.07 caused by the strongest attack, Projected Gradient Descent (PGD). With ensemble, adversarial and ELAT, the average scores were recovered to 0.80, 0.88 and 0.91, respectively. In addition, this work involves prediction of the models and approach implemented behind the system using cosine similarity with an accuracy of 99.9%.
引用
收藏
页数:12
相关论文
共 50 条
  • [41] On the Effect of Adversarial Training Against Invariance-based Adversarial Examples
    Rauter, Roland
    Nocker, Martin
    Merkle, Florian
    Schoettle, Pascal
    PROCEEDINGS OF 2023 8TH INTERNATIONAL CONFERENCE ON MACHINE LEARNING TECHNOLOGIES, ICMLT 2023, 2023, : 54 - 60
  • [42] Diversity Adversarial Training against Adversarial Attack on Deep Neural Networks
    Kwon, Hyun
    Lee, Jun
    SYMMETRY-BASEL, 2021, 13 (03):
  • [43] Deep Reinforcement Adversarial Learning Against Botnet Evasion Attacks
    Apruzzese, Giovanni
    Andreolini, Mauro
    Marchetti, Mirco
    Venturi, Andrea
    Colajanni, Michele
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2020, 17 (04): : 1975 - 1987
  • [44] eXplainable and Reliable Against Adversarial Machine Learning in Data Analytics
    Vaccari, Ivan
    Carlevaro, Alberto
    Narteni, Sara
    Cambiaso, Enrico
    Mongelli, Maurizio
    IEEE ACCESS, 2022, 10 : 83949 - 83970
  • [45] An Advanced Ensemble Framework for defending against obfuscated Windows, Android, and IoT malware
    Vasan, Danish
    Akram, Junaid
    Hammoudeh, Mohammad
    Ahmed, Adel F.
    APPLIED SOFT COMPUTING, 2025, 173
  • [46] A Self Supervised Defending Mechanism Against Adversarial Iris Attacks based on Wavelet Transform
    Meenakshi, K.
    Maragatham, G.
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2021, 12 (02) : 564 - 569
  • [47] Detecting unknown intrusions from large heterogeneous data through ensemble learning
    Jemili, Farah
    Jouini, Khaled
    Korbaa, Ouajdi
    INTELLIGENT SYSTEMS WITH APPLICATIONS, 2025, 25
  • [48] A study of ensemble feature selection and adversarial training for malicious user detection
    Zhang, Linjie
    Zhu, Xiaoyan
    Ma, Jianfeng
    CHINA COMMUNICATIONS, 2023, 20 (10) : 212 - 229
  • [49] Ensemble-Based Distributed Learning for Generative Adversarial Networks
    Liu, Chonghe
    Ren, Jinke
    Yu, Guanding
    2022 IEEE 95TH VEHICULAR TECHNOLOGY CONFERENCE (VTC2022-SPRING), 2022,
  • [50] Addressing Adversarial Attacks Against Security Systems Based on Machine Learning
    Apruzzese, Giovanni
    Colajanni, Michele
    Ferretti, Luca
    Marchetti, Mirco
    2019 11TH INTERNATIONAL CONFERENCE ON CYBER CONFLICT (CYCON): SILENT BATTLE, 2019, : 383 - 400