Unsupervised learning approach for network intrusion detection system using autoencoders

被引:117
作者
Choi, Hyunseung [1 ]
Kim, Mintae [1 ]
Lee, Gyubok [1 ]
Kim, Wooju [1 ]
机构
[1] Yonsei Univ, Dept Ind Engn, 50 Yonsei Ro, Seoul, South Korea
关键词
Intrusion detection system; Unsupervised learning; Autoencoder; Anomaly detection; NSL-KDD;
D O I
10.1007/s11227-019-02805-w
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Network intrusion detection systems are useful tools that support system administrators in detecting various types of intrusions and play an important role in monitoring and analyzing network traffic. In particular, anomaly detection-based network intrusion detection systems are widely used and are mainly implemented in two ways: (1) a supervised learning approach trained using labeled data and (2) an unsupervised learning approach trained using unlabeled data. Most studies related to intrusion detection systems focus on supervised learning. However, the process of acquiring labeled data is expensive, requiring manual labeling by network experts. Therefore, it is worthwhile investigating the development of unsupervised learning approaches for intrusion detection systems. In this study, we developed a network intrusion detection system using an unsupervised learning algorithm autoencoder and verified its performance. As our results show, our model achieved an accuracy of 91.70%, which outperforms previous studies that achieved 80% accuracy using cluster analysis algorithms. Our results provide a practical guideline for developing network intrusion detection systems based on autoencoders and significantly contribute to the exploration of unsupervised learning techniques for various network intrusion detection systems.
引用
收藏
页码:5597 / 5621
页数:25
相关论文
共 22 条
[1]  
[Anonymous], 2010, 2010 10 INT C INTELL
[2]  
[Anonymous], APPL BIG DATA NATL S
[3]  
Bace R., 2001, NIST Special Publication on Intrusion Detection Systems
[4]  
Bengio P., 2006, Advances in Neural Information Processing Systems 19 (NIPS06), P153, DOI DOI 10.5555/2976456.2976476
[5]   Learning Deep Architectures for AI [J].
Bengio, Yoshua .
FOUNDATIONS AND TRENDS IN MACHINE LEARNING, 2009, 2 (01) :1-127
[6]   Building feature space of extreme learning machine with sparse denoising stacked-autoencoder [J].
Cao, Le-le ;
Huang, Wen-bing ;
Sun, Fu-chun .
NEUROCOMPUTING, 2016, 174 :60-71
[7]  
Choche Akshay, 2011, Proceedings of the 2011 International Conference on Information & Knowledge Engineering (IKE 2011), P151
[8]  
Deligiannidis L., 2015, Emerging trends in image processing, computer vision and pattern recognition, P117
[9]  
Gogoi P., 2010, Journal of Convergence Information Technology, V5, P95, DOI DOI 10.4156/JCIT.VOL5.ISSUE1.11
[10]   Reducing the dimensionality of data with neural networks [J].
Hinton, G. E. ;
Salakhutdinov, R. R. .
SCIENCE, 2006, 313 (5786) :504-507