Hierarchical Multiclass Continual Learning for Network Intrusion Detection

被引:0
|
作者
Talpini, Jacopo [1 ]
Sartori, Fabio [1 ]
Savi, Marco [1 ]
机构
[1] Univ Milano Bicocca, Dept Informat Syst & Commun DISCo, Milan, Italy
关键词
D O I
10.1109/NetSoft60951.2024.10588909
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The evolution of Internet and its related communication technologies have consistently increased the risk of cyberattacks. In this context, a crucial role is played by Intrusion Detection Systems (IDSs), which are security devices designed to identify and mitigate attacks to modern networks. In the last decade, data-driven approaches based on Machine Learning (ML) have gained more and more popularity for executing the classification tasks required by signature-based IDSs. However, typical ML models adopted for this purpose are trained in static settings while new attacks - and variants of known attacks - dynamically emerge over time. As a consequence, there is the need of keeping the IDS capability constantly updated, which poses peculiar challenges especially in resourced-constrained scenarios. To this end, we propose a novel hierarchical model based on a binary classification of benign and malicious traffic performed by a Bayesian Neural Network that is trained continuously and efficiently by exploiting Continual Learning. A generative multiclass classifier is then adopted to incrementally classify new kinds of attacks with respect to the malicious traffic. We prove the effectiveness of our approach showing that it removes the need of storing network traffic data samples related to historical data, representative of all the kinds of attacks, while ensuring good detection capabilities.
引用
收藏
页码:263 / 267
页数:5
相关论文
共 50 条
  • [1] A multiclass cascade of artificial neural network for network intrusion detection
    Baig, Mirza M.
    Awais, Mian M.
    El-Alfy, El-Sayed M.
    [J]. JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2017, 32 (04) : 2875 - 2883
  • [2] Analysis of Continual Learning Models for Intrusion Detection System
    Prasath, Sai
    Sethi, Kamalakanta
    Mohanty, Dinesh
    Bera, Padmalochan
    Samantaray, Subhransu Ranjan
    [J]. IEEE ACCESS, 2022, 10 : 121444 - 121464
  • [3] Hybrid hierarchical network intrusion detection
    Yang, Hong-Yu
    Xie, Li-Xia
    [J]. PROCEEDINGS OF 2006 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-7, 2006, : 2702 - +
  • [4] Hierarchical Autoencoder for Network Intrusion Detection
    Kye, Hyoseon
    Kim, Miru
    Kwon, Minhae
    [J]. IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC 2022), 2022, : 2700 - 2705
  • [5] Hierarchical visualization of network intrusion detection data
    Itoh, T
    Takakura, H
    Sawada, A
    Koyamada, K
    [J]. IEEE COMPUTER GRAPHICS AND APPLICATIONS, 2006, 26 (02) : 40 - 47
  • [6] Empirical study on multiclass classification-based network intrusion detection
    Elmasry, Wisam
    Akbulut, Akhan
    Zaim, Abdul Halim
    [J]. COMPUTATIONAL INTELLIGENCE, 2019, 35 (04) : 919 - 954
  • [7] A Multi-Class Intrusion Detection System Based on Continual Learning
    Oikonomou, Chrysoula
    Iliopoulos, Ilias
    Ioannidis, Dimosthenis
    Tzovaras, Dimitrios
    [J]. 2023 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE, CSR, 2023, : 86 - 91
  • [8] CONTINUAL LEARNING FOR INFINITE HIERARCHICAL CHANGE-POINT DETECTION
    Moreno-Munoz, Pablo
    Ramirez, David
    Artes-Rodriguez, Antonio
    [J]. 2020 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH, AND SIGNAL PROCESSING, 2020, : 3582 - 3586
  • [9] Toward an Online Continual Learning Architecture for Intrusion Detection of Video Surveillance
    Kwon, Beom
    Kim, Taewan
    [J]. IEEE ACCESS, 2022, 10 : 89732 - 89744
  • [10] Hierarchical Core Vector Machines for Network Intrusion Detection
    Chen, Ye
    Pang, Shaoning
    Kasabov, Nikola
    Ban, Tao
    Kadobayashi, Youki
    [J]. NEURAL INFORMATION PROCESSING, PT 2, PROCEEDINGS, 2009, 5864 : 520 - +