Anomaly detection optimization using big data and deep learning to reduce false-positive

被引:33
|
作者
Al Jallad, Khloud [1 ]
Aljnidi, Mohamad [1 ]
Desouki, Mohammad Said [2 ]
机构
[1] Higher Inst Appl Sci & Technol, Fac Informat Technol, Damascus, Syria
[2] Arab Int Univ, Fac Informat Technol, Daraa, Syria
关键词
Intrusion detection systems (IDS); Security intelligence optimization; Unknown threats; Big data; NSL-KDD dataset; False-positive; INCREMENTAL SVM; INTRUSION; GA;
D O I
10.1186/s40537-020-00346-1
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Anomaly-based Intrusion Detection System (IDS) has been a hot research topic because of its ability to detect new threats rather than only memorized signatures threats of signature-based IDS. Especially after the availability of advanced technologies that increase the number of hacking tools and increase the risk impact of an attack. The problem of any anomaly-based model is its high false-positive rate. The high false-positive rate is the reason why anomaly IDS is not commonly applied in practice. Because anomaly-based models classify an unseen pattern as a threat where it may be normal but not included in the training dataset. This type of problem is called overfitting where the model is not able to generalize. Optimizing Anomaly-based models by having a big training dataset that includes all possible normal cases may be an optimal solution but could not be applied in practice. Although we can increase the number of training samples to include much more normal cases, still we need a model that has more ability to generalize. In this research paper, we propose applying deep model instead of traditional models because it has more ability to generalize. Thus, we will obtain less false-positive by using big data and deep model. We made a comparison between machine learning and deep learning algorithms in the optimization of anomaly-based IDS by decreasing the false-positive rate. We did an experiment on the NSL-KDD benchmark and compared our results with one of the best used classifiers in traditional learning in IDS optimization. The experiment shows 10% lower false-positive by using deep learning instead of traditional learning.
引用
收藏
页数:12
相关论文
共 50 条
  • [1] Anomaly detection optimization using big data and deep learning to reduce false-positive
    Khloud Al Jallad
    Mohamad Aljnidi
    Mohammad Said Desouki
    Journal of Big Data, 7
  • [2] Anomaly Detection in Renewable Energy Big Data Using Deep Learning
    Katamoura, Suzan MohammadAli
    Aksoy, Mehmet Sabih
    INTERNATIONAL JOURNAL OF INTELLIGENT INFORMATION TECHNOLOGIES, 2023, 19 (01)
  • [3] REDUCE FALSE-POSITIVE RATE BY ACTIVE LEARNING FOR AUTOMATIC POLYP DETECTION IN COLONOSCOPY VIDEOS
    Guo, Zhe
    Zhang, Ruiyao
    Li, Qin
    Liu, Xinkai
    Nemoto, Daiki
    Togashi, Kazutomo
    Niroshana, Isuru S. M.
    Shi, Yuchen
    Zhu, Xin
    2020 IEEE 17TH INTERNATIONAL SYMPOSIUM ON BIOMEDICAL IMAGING (ISBI 2020), 2020, : 1655 - 1658
  • [4] Anomaly Detection Using Deep Learning and Big Data Analytics for the Insider Threat Platform
    Alam, Abu
    Barron, Harry
    INTELLIGENT COMPUTING, VOL 1, 2022, 506 : 512 - 531
  • [5] False-positive Reduction of Liver Tumor Detection Using Ensemble Learning Method
    Miyamoto, Atsushi
    Miyakoshi, Junichi
    Matsuzaki, Kazuki
    Irie, Toshiyuki
    MEDICAL IMAGING 2013: IMAGE PROCESSING, 2013, 8669
  • [6] Evaluation of Machine Learning Classification Models for False-Positive Reduction in Prostate Cancer Detection Using MRI Data
    Rippa, Malte
    Schulze, Ruben
    Kenyon, Georgia
    Himstedt, Marian
    Kwiatkowski, Maciej
    Grobholz, Rainer
    Wyler, Stephen
    Cornelius, Alexander
    Schindera, Sebastian
    Burn, Felice
    DIAGNOSTICS, 2024, 14 (15)
  • [7] A Multilevel Deep Learning Method for Data Fusion and Anomaly Detection of Power Big Data
    Liu, Dong-Lan
    Liu, Xin
    Yu, Hao
    Wang, Wen-Ting
    Zhao, Xiao-Hong
    Chen, Jian-Fei
    PROCEEDINGS OF THE 3RD ANNUAL INTERNATIONAL CONFERENCE ON ELECTRONICS, ELECTRICAL ENGINEERING AND INFORMATION SCIENCE (EEEIS 2017), 2017, 131 : 533 - 539
  • [8] Video Anomaly Detection Using Optimization Based Deep Learning
    Gayal, Baliram Sambhaji
    Patil, Sandip Raosaheb
    UBIQUITOUS INTELLIGENT SYSTEMS, 2022, 302 : 249 - 264
  • [9] Automated Brain Metastases Segmentation With a Deep Dive Into False-positive Detection
    Ziyaee, Hamidreza
    Cardenas, Carlos E.
    Yeboa, Nana
    Li, Jing
    Ferguson, Sherise D.
    Johnson, Jason
    Zhou, Zijian
    Sanders, Jeremiah
    Mumme, Raymond
    Court, Laurence
    Briere, Tina
    Yang, Jinzhong
    ADVANCES IN RADIATION ONCOLOGY, 2023, 8 (01)
  • [10] False Positive Mitigation in Behavioral Malware Detection Using Deep Learning
    Lungana-Niculescu, Alexandru Mihai
    Colesa, Adrian
    Oprisa, Ciprian
    2018 IEEE 14TH INTERNATIONAL CONFERENCE ON INTELLIGENT COMPUTER COMMUNICATION AND PROCESSING (ICCP), 2018, : 197 - 203