Service-Aware Two-Level Partitioning for Machine Learning-Based Network Intrusion Detection With High Performance and High Scalability

被引:7
|
作者
Uhm, Yeongje [1 ]
Pak, Wooguil [2 ]
机构
[1] DS Mentoring Corp, Seoul 03909, South Korea
[2] Yeungnam Univ, Dept Informat & Commun Engn, Gyongsan 38541, South Korea
基金
新加坡国家研究基金会;
关键词
Classification algorithms; Machine learning algorithms; Machine learning; Partitioning algorithms; Support vector machines; Heuristic algorithms; Scalability; Network intrusion detection; service based partitioning; imbalanced data; machine learning; minority class problem; IDS;
D O I
10.1109/ACCESS.2020.3048900
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A network intrusion detection system (NIDS) is an important technology for cyber security. Recently, machine learning based NIDSs are being actively researched as various machine learning techniques are proposed. However, existing NIDSs have limitation in terms of generality because they have been designed based on specific characteristics obtained from analyzing some partial datasets. Moreover, in reality, the NIDS datasets have a significantly imbalanced ratio between normal and abnormal data. It causes the minority class problem, which needs to be addressed for developing robust and reliable NIDSs working in various environments. This paper proposes a novel technique using service-aware dataset partitioning, which provides high scalability to handle huge and rapidly growing network data flexibly, and helps the classifier to improve the classification performance in terms of accuracy and speed. We evaluated our approach with the Kyoto2016 dataset, which is a well-known dataset for highly imbalanced data, using various classification algorithms and parameters for achieving the best performance and compared it with existing state-of-the-art approaches. Our experimental results indicated that our approach can classify network traffics rapidly and accurately with huge imbalanced datasets. We conclude that it can relieve serious existing issues of imbalanced datasets for modern machine learning based NIDS solutions.
引用
收藏
页码:6608 / 6622
页数:15
相关论文
共 50 条
  • [1] Two-Level Intrusion Detection System in SDN Using Machine Learning
    Vetriselvi, V.
    Shruti, P. S.
    Abraham, Susan
    ICCCE 2018, 2019, 500 : 449 - 461
  • [2] Two-level machine learning driven intrusion detection model for IoT environments
    Malhi, Yuvraj Singh
    Shekhawat, Virendra Singh
    INTERNATIONAL JOURNAL OF INFORMATION AND COMPUTER SECURITY, 2023, 21 (3-4) : 229 - 261
  • [3] A Two-Level Ensemble Learning Framework for Enhancing Network Intrusion Detection Systems
    Arreche, Osvaldo
    Bibers, Ismail
    Abdallah, Mustafa
    IEEE ACCESS, 2024, 12 : 83830 - 83857
  • [4] Automatic Evasion of Machine Learning-Based Network Intrusion Detection Systems
    Yan, Haonan
    Li, Xiaoguang
    Zhang, Wenjing
    Wang, Rui
    Li, Hui
    Zhao, Xingwen
    Li, Fenghua
    Lin, Xiaodong
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (01) : 153 - 167
  • [5] Design and Performance Evaluation of a Machine Learning-Based Method for Intrusion Detection
    Zhang, Qinglei
    Hu, Gongzhu
    Feng, Wenying
    SOFTWARE ENGINEERING, ARTIFICIAL INTELLIGENCE, NETWORKING AND PARALLEL-DISTRIBUTED COMPUTING 2010, 2010, 295 : 69 - +
  • [6] Data Processing and Model Selection for Machine Learning-based Network Intrusion Detection
    Sahu, Abhijeet
    Mao, Zeyu
    Davis, Katherine
    Goulart, Ana E.
    2020 IEEE INTERNATIONAL WORKSHOP TECHNICAL COMMITTEE ON COMMUNICATIONS QUALITY AND RELIABILITY (CQR), 2020, : 49 - 54
  • [7] A machine learning-based intrusion detection for detecting internet of things network attacks
    Saheed, Yakub Kayode
    Abiodun, Aremu Idris
    Misra, Sanjay
    Holone, Monica Kristiansen
    Colomo-Palacios, Ricardo
    ALEXANDRIA ENGINEERING JOURNAL, 2022, 61 (12) : 9395 - 9409
  • [8] Machine Learning-Based Intrusion Detection for Rare-Class Network Attacks
    Yang, Yu
    Gu, Yuheng
    Yan, Yu
    ELECTRONICS, 2023, 12 (18)
  • [9] Machine Learning-Based Network Intrusion Detection Optimization for Cloud Computing Environments
    Samriya, Jitendra Kumar
    Kumar, Surendra
    Kumar, Mohit
    Wu, Huaming
    Gill, Sukhpal Singh
    IEEE TRANSACTIONS ON CONSUMER ELECTRONICS, 2024, 70 (04) : 7449 - 7460
  • [10] The Cross-Evaluation of Machine Learning-Based Network Intrusion Detection Systems
    Apruzzese, Giovanni
    Pajola, Luca
    Conti, Mauro
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2022, 19 (04): : 5152 - 5169