Multi-Class Network Anomaly Detection Using Machine Learning Techniques

被引:0
|
作者
Gunupusala, Satyanarayana [1 ]
Kaila, Shahu Chatrapathi [1 ]
机构
[1] Jawaharlal Nehru Technol Univ Hyderabad, Dept Comp Sci & Engn, Hyderabad 500085, Telangana, India
来源
CONTEMPORARY MATHEMATICS | 2024年 / 5卷 / 02期
关键词
machine learning algorithms; UNSW-NB15; MSE; Intrusion Detection System (IDS); network attacks; INTRUSION DETECTION; EXTRA-TREES; ALGORITHM; SYSTEMS;
D O I
10.37256/cm.5220243723
中图分类号
O29 [应用数学];
学科分类号
070104 ;
摘要
Computer networks rely on Intrusion Detection Systems (IDSs) and Intrusion Prevention Systems (IPSs) to ensure the security, reliability, and availability of an organization. In recent years, various approaches were developed and implemented to create effective IDSs and IPSs. This paper specifically focuses on IDSs that utilize Machine Learning (ML) techniques for improved accuracy. ML-based IDSs have verified to be successful in discovering network attacks. However, their performance tends to decline when dealing with high-dimensional data spaces. It is essential to develop a suitable feature extraction strategy that could identify and remove irrelevant features that do not significantly classification process to address this issue. Additionally, many ML-based IDSs exhibit high false positive rates and poor detection accuracy when trained on unbalanced datasets. In this study, we analyze the UNSW-NB15 IDS, which will serve as the training and testing data for our models. In order to reduce the feature space and improve the efficiency of our analysis, we leverage a filter-based feature reduction method utilizing the Pearson correlation coefficient algorithm. By identifying and selecting only the most relevant features, we are able to streamline our dataset and focus on the variables that have the highest impact on our analysis. This approach not only reduces computational complexity but also improves the interpretability of our results by eliminating unnecessary noise from the data. After applying the feature reduction technique, we proceed to implement a range of machine learning methods to perform our classification task. These include well-known algorithms such as Stacking, Extra Trees, Multi-Layer Perceptron, XGBoost, K-Nearest Neighbors, Logistic Regression, Na & iuml;ve Bayes, Support Vector Machine, Random Forest, and Decision Tree. By employing a diverse set of algorithms, we are able to explore different modeling approaches and evaluate their effectiveness in accurately classifying the various types of assaults. In order to assess the performance of our classification models, we utilize a range of specialized evaluation metrics such as Root Mean Square Error (RMSE), Mean Absolute Error (MAE), R2-Score, Mean Squared Error (MSE), Precision, F1-Score, Recall, and Accuracy. These metrics provide us with a comprehensive understanding of how well our models are performing across different dimensions, including the accuracy of predictions, the level of precision in classifying different assault types, and the overall goodness-of-fit of our models. By considering multiple evaluation metrics, we are able to gain a more nuanced understanding of the strengths and weaknesses of each algorithm and make informed decisions about their suitability for our classification task. These metrics deliver a complete evaluation of the classifiers' effectiveness in detecting community intrusions.
引用
收藏
页码:2335 / 2352
页数:18
相关论文
共 50 条
  • [1] A Multi-class Classification for Detection of IoT Network Attacks Using Machine Learning Models
    Ashok, Gadde
    Serath, Kommula
    Kumar, T. Gireesh
    [J]. DISTRIBUTED COMPUTING AND INTELLIGENT TECHNOLOGY, ICDCIT 2024, 2024, 14501 : 167 - 178
  • [2] Bearing Fault Classification Using Multi-Class Machine Learning (ML) Techniques
    Sujatha, C.
    Mohan, Aravind
    [J]. EAI ENDORSED TRANSACTIONS ON SCALABLE INFORMATION SYSTEMS, 2024, 11 (01):
  • [3] Multi-Class Hypersphere Anomaly Detection
    Kirchheim, Konstantin
    Filax, Marco
    Ortmeier, Frank
    [J]. 2022 26TH INTERNATIONAL CONFERENCE ON PATTERN RECOGNITION (ICPR), 2022, : 2636 - 2642
  • [4] Anomaly Detection using Machine Learning Techniques
    Wankhede, Sonali B.
    [J]. 2019 IEEE 5TH INTERNATIONAL CONFERENCE FOR CONVERGENCE IN TECHNOLOGY (I2CT), 2019,
  • [5] ECG Multi-Class Classification using Neural Network as Machine Learning Model
    Lassoued, Hela
    Ketata, Raouf
    [J]. 2018 INTERNATIONAL CONFERENCE ON ADVANCED SYSTEMS AND ELECTRICAL TECHNOLOGIES (IC_ASET), 2017, : 473 - 478
  • [6] A Unified Model for Multi-class Anomaly Detection
    You, Zhiyuan
    Cui, Lei
    Shen, Yujun
    Yang, Kai
    Lu, Xin
    Zheng, Yu
    Le, Xinyi
    [J]. ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 35 (NEURIPS 2022), 2022,
  • [7] A Multi-class Classification Approach for Weather Forecasting with Machine Learning Techniques
    Dritsas, Elias
    Trigka, Maria
    Mylonas, Phivos
    [J]. 2022 17TH INTERNATIONAL WORKSHOP ON SEMANTIC AND SOCIAL MEDIA ADAPTATION & PERSONALIZATION (SMAP 2022), 2022, : 81 - 85
  • [8] Multi-class Sports News Categorization using Machine Learning Techniques: Resource Creation and Evaluation
    Barua, Adrita
    Sharif, Omar
    Hoque, Mohammed Moshiul
    [J]. 10TH INTERNATIONAL YOUNG SCIENTISTS CONFERENCE IN COMPUTATIONAL SCIENCE (YSC2021), 2021, 193 : 112 - 121
  • [9] Network Intrusion Detection Based on Multi-Class Support Vector Machine
    Anh Vu Le
    Hoai An Le Thi
    Manh Cuong Nguyen
    Zidna, Ahmed
    [J]. COMPUTATIONAL COLLECTIVE INTELLIGENCE - TECHNOLOGIES AND APPLICATIONS, PT I, 2012, 7653 : 536 - 543
  • [10] Multi-class JPEG Steganalysis Using Extreme Learning Machine
    Bhasin, Veenu
    Bedi, Punam
    [J]. 2013 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2013, : 1948 - 1952