ESVI-GaMM: A fast network intrusion detection approach based on the Bayesian gamma mixture model

被引:0
|
作者
He, Wenda [1 ]
Cai, Xiangrui [1 ]
Lai, Yuping [2 ]
Yuan, Xiaojie [1 ]
机构
[1] Nankai Univ, Coll Comp Sci, TKLNDST, Tianjin, Peoples R China
[2] Beijing Univ Posts & Telecommun, Sch Cyberspace Secur, Beijing, Peoples R China
基金
国家重点研发计划; 中国国家自然科学基金;
关键词
Bayesian inference; Gamma mixture model; Extended stochastic variational inference; Network intrusion detection; ANOMALY DETECTION; DETECTION SYSTEM; CLASSIFIER; MACHINE;
D O I
10.1016/j.ins.2024.121001
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
As the application of networks permeates various aspects of daily life, maintaining network security has become a crucial challenge. A network intrusion detection system (NIDS) functions as a critical technique for securing cyberspace and has gained considerable attention. Although researchers have made significant progress in developing NIDSs, challenges still exist in high -speed networks with overwhelming network traffic. Existing methods largely focus on improving model detection accuracy and often overlook speed and computational efficiency. This oversight renders most current methods impractical for real -world high -speed network scenarios. To address this issue, we propose an innovative and efficient network intrusion detection algorithm, namely, the Bayesian gamma mixture model (GaMM) classifier. With the recently proposed extended stochastic variational inference (ESVI) framework, we introduce lower-bound approximations to the evidence lower bound (ELBO), namely, the original variational object function. An analytically tractable Bayesian estimation algorithm for a GaMM is derived through stochastic optimization of the obtained lower bound and we validate its performance and computational efficiency on three publicly available datasets (CICMalmem2022, OPCUA, and CICIDS2018). The experimental results indicate that the proposed classifier not only achieves a detection performance comparable to that of other benchmark models but also significantly reduces both the training and detection times.
引用
收藏
页数:13
相关论文
共 50 条
  • [21] An effective convolutional neural network based on SMOTE and Gaussian mixture model for intrusion detection in imbalanced dataset
    Zhang, Hongpo
    Huang, Lulu
    Wu, Chase Q.
    Li, Zhanbo
    COMPUTER NETWORKS, 2020, 177
  • [22] Intrusion Detection Classification Model on an Improved k-Dependence Bayesian Network
    Yin, Hongsheng
    Xue, Mengyang
    Xiao, Yuteng
    Xia, Kaijian
    Yu, Guofang
    IEEE ACCESS, 2019, 7 : 157555 - 157563
  • [23] A Novel Approach to Network Intrusion Detection with LR Stacking Model
    Jarin M.
    Mostafizur Rahaman A.S.M.
    Lecture Notes on Data Engineering and Communications Technologies, 2023, 180 : 334 - 343
  • [24] Network intrusion intention analysis model based on Bayesian attack graph
    Luo Z.
    Yang X.
    Liu J.
    Xu R.
    1600, Editorial Board of Journal on Communications (41): : 160 - 169
  • [25] Network intrusion detection based on the temporal convolutional model
    Lopes, Ivandro O.
    Zou, Deqing
    Abdulqadder, Ihsan H.
    Akbar, Saeed
    Li, Zhen
    Ruambo, Francis
    Pereira, Wagner
    COMPUTERS & SECURITY, 2023, 135
  • [26] Network Intrusion Detection Model Based on CNN and GRU
    Cao, Bo
    Li, Chenghai
    Song, Yafei
    Qin, Yueyi
    Chen, Chen
    APPLIED SCIENCES-BASEL, 2022, 12 (09):
  • [27] Intrusion detection system model based on the neural network
    Li, Hongpei
    Wang, Xinmei
    Xi'an Dianzi Keji Daxue Xuebao/Journal of Xidian University, 1999, 26 (05): : 667 - 670
  • [28] Design of Network Intrusion Detection Model Based on TCA
    Wen, Quan
    Security and Communication Networks, 2022, 2022
  • [29] Network intrusion detection model based on context verification
    Tian, Z. (tianzhihong@hit.edu.cn), 1600, Science Press (50):
  • [30] A Network Intrusion Detection Model Based on Artificial Immune
    Xiao, Xin
    Zhang, Rui Rui
    NATURAL RESOURCES AND SUSTAINABLE DEVELOPMENT, PTS 1-3, 2012, 361-363 : 687 - 690