Hierarchical Intrusion Detection Using Machine Learning and Knowledge Model

被引:31
|
作者
Sarnovsky, Martin [1 ]
Paralic, Jan [1 ]
机构
[1] Tech Univ Kosice, Dept Cybernet & Artificial Intelligence, Fac Elect Engn & Informat, Letna 9, Kosice 04001, Slovakia
来源
SYMMETRY-BASEL | 2020年 / 12卷 / 02期
关键词
intrusion detection; machine learning; classification; knowledge modelling; DETECTION SYSTEM;
D O I
10.3390/sym12020203
中图分类号
O [数理科学和化学]; P [天文学、地球科学]; Q [生物科学]; N [自然科学总论];
学科分类号
07 ; 0710 ; 09 ;
摘要
Intrusion detection systems (IDS) present a critical component of network infrastructures. Machine learning models are widely used in the IDS to learn the patterns in the network data and to detect the possible attacks in the network traffic. Ensemble models combining a variety of different machine learning models proved to be efficient in this domain. On the other hand, knowledge models have been explicitly designed for the description of the attacks and used in ontology-based IDS. In this paper, we propose a hierarchical IDS based on the original symmetrical combination of machine learning approach with knowledge-based approach to support detection of existing types and severity of new types of network attacks. Multi-stage hierarchical prediction consists of the predictive models able to distinguish the normal connections from the attacks and then to predict the attack classes and concrete attack types. The knowledge model enables to navigate through the attack taxonomy and to select the appropriate model to perform a prediction on the selected level. Designed IDS was evaluated on a widely used KDD 99 dataset and compared to similar approaches.
引用
收藏
页数:14
相关论文
共 50 条
  • [1] A novel machine learning model for perimeter intrusion detection using intrusion image dataset
    Pitafi, Shahneela
    Anwar, Toni
    Widia, I. Dewa Made
    Sharif, Zubair
    Yimwadsana, Boonsit
    PLOS ONE, 2024, 19 (12):
  • [2] Enhancing Network Intrusion Detection Model Using Machine Learning Algorithms
    Awad, Nancy Awadallah
    CMC-COMPUTERS MATERIALS & CONTINUA, 2021, 67 (01): : 979 - 990
  • [3] Classification model for accuracy and intrusion detection using machine learning approach
    Agarwal A.
    Sharma P.
    Alshehri M.
    Mohamed A.A.
    Alfarraj O.
    PeerJ Computer Science, 2021, 7 : 1 - 22
  • [4] Network Intrusion Detection Model Using Fused Machine Learning Technique
    Alotaibi, Fahad Mazaed
    CMC-COMPUTERS MATERIALS & CONTINUA, 2023, 75 (02): : 2479 - 2490
  • [5] Classification model for accuracy and intrusion detection using machine learning approach
    Agarwal, Arushi
    Sharma, Purushottam
    Alshehri, Mohammed
    Mohamed, Ahmed A.
    Alfarraj, Osama
    PEERJ COMPUTER SCIENCE, 2021,
  • [6] USING MACHINE LEARNING FOR INTRUSION DETECTION SYSTEMS
    Quang-Vinh Dang
    COMPUTING AND INFORMATICS, 2022, 41 (01) : 12 - 33
  • [7] Adaptive Intrusion Detection Using Machine Learning
    Neethu, B.
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2013, 13 (03): : 118 - 124
  • [8] ChronosGuard: A Hierarchical Machine Learning Intrusion Detection System for Modern Clouds
    Verkerken, Miel
    Santos, Jose
    D'hooge, Laurens
    Wauters, Tim
    Volckaert, Bruno
    De Turck, Filip
    2024 20TH INTERNATIONAL CONFERENCE ON NETWORK AND SERVICE MANAGEMENT, CNSM 2024, 2024,
  • [9] An Adaptive Ensemble Machine Learning Model for Intrusion Detection
    Gao, Xianwei
    Shan, Chun
    Hu, Changzhen
    Niu, Zequn
    Liu, Zhen
    IEEE ACCESS, 2019, 7 : 82512 - 82521
  • [10] A hybrid machine learning model for intrusion detection in VANET
    Bangui, Hind
    Ge, Mouzhi
    Buhnova, Barbora
    COMPUTING, 2022, 104 (03) : 503 - 531