paper-with-me

홈 › Papers

A Novel Multi-Stage Approach for Hierarchical Intrusion Detection

2023-03-21 · IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT 2023 3 · Miel Verkerken, Laurens D’hooge, Didik Sudyana, Ying-Dar Lin, Tim Wauters, Bruno Volckaert, Filip De Turck

An intrusion detection system (IDS), traditionally an example of an effective security monitoring system, is facing significant challenges due to the ongoing digitization of our modern society. The growing number and variety of connected devices are not only causing a continuous emergence of new threats that are not recognized by existing systems, but the amount of data to be monitored is also exceeding the capabilities of a single system. This raises the need for a scalable IDS capable of detecting unknown, zero-day, attacks. In this paper, a novel multi-stage approach for hierarchical intrusion detection is proposed. The proposed approach is validated on the public benchmark datasets, CIC-IDS-2017 and CSE-CIC-IDS-2018. Results demonstrate that our proposed approach besides effective and robust zero-day detection, outperforms both the baseline and existing approaches, achieving high classification performance, up to 96% balanced accuracy. Additionally, the proposed approach is easily adaptable without any retraining and takes advantage of n-tier deployments to reduce bandwidth and computational requirements while preserving privacy constraints. The best-performing models with a balanced set of thresholds correctly classified 87% or 41 out of 47 zero-day attacks, while reducing the bandwidth requirements up to 69%.

📄 PDF Abstract BibTeX

Code (1)

https://gitlab.ilabt.imec.be/mverkerk/multi-stage-hierarchical-ids 공식 구현

Tasks

Anomaly DetectionIntrusion DetectionMulti-class ClassificationNetwork Intrusion Detection

Similar Papers 제목 키워드 기반

HBFL: A Hierarchical Blockchain-based Federated Learning Framework for a Collaborative IoT Intrusion Detection

2022-04-08 · Mohanad Sarhan, Wai Weng Lo, Siamak Layeghy, Marius Portmann

The continuous strengthening of the security posture of IoT ecosystems is vital due to the increasing number of interconnected devices and the volume of sensitive data shared. The utilisation of Machine Learning (ML) cap…

Federated LearningIntrusion Detection

Effective Multi-Stage Training Model For Edge Computing Devices In Intrusion Detection

2024-01-31 · Thua Huynh Trong, Thanh Nguyen Hoang

Intrusion detection poses a significant challenge within expansive and persistently interconnected environments. As malicious code continues to advance and sophisticated attack methodologies proliferate, various advanced…

Edge-computingIntrusion DetectionModel Compression

Effective Intrusion Detection for UAV Communications using Autoencoder-based Feature Extraction and Machine Learning Approach

2024-10-01 · Tuan-Cuong Vuong, Cong Chi Nguyen, Van-Cuong Pham, Thi-Thanh-Huyen Le 외

This paper proposes a novel intrusion detection method for unmanned aerial vehicles (UAV) in the presence of recent actual UAV intrusion dataset. In particular, in the first stage of our method, we design an autoencoder …

feature selectionIntrusion DetectionMulti-class Classification

Host-Based Network Intrusion Detection via Feature Flattening and Two-stage Collaborative Classifier

2023-06-15 · Zhiyan Chen, Murat Simsek, Burak Kantarci, Mehran Bagheri 외

Network Intrusion Detection Systems (NIDS) have been extensively investigated by monitoring real network traffic and analyzing suspicious activities. However, there are limitations in detecting specific types of attacks …

Intrusion DetectionNetwork Intrusion Detection

AMDS: Attack-Aware Multi-Stage Defense System for Network Intrusion Detection with Two-Stage Adaptive Weight Learning

2026-03-01 · Oluseyi Olukola, Nick Rahimi arxiv

Machine learning based network intrusion detection systems are vulnerable to adversarial attacks that degrade classification performance under both gradient-based and distribution shift threat models. Existing defenses t…

Network Intrusion DetectionAdversarial RobustnessAdversarial Attack