Multi-Class Network Anomaly Detection Using Machine Learning Techniques

被引:0
|
作者
Gunupusala, Satyanarayana [1 ]
Kaila, Shahu Chatrapathi [1 ]
机构
[1] Jawaharlal Nehru Technol Univ Hyderabad, Dept Comp Sci & Engn, Hyderabad 500085, Telangana, India
来源
CONTEMPORARY MATHEMATICS | 2024年 / 5卷 / 02期
关键词
machine learning algorithms; UNSW-NB15; MSE; Intrusion Detection System (IDS); network attacks; INTRUSION DETECTION; EXTRA-TREES; ALGORITHM; SYSTEMS;
D O I
10.37256/cm.5220243723
中图分类号
O29 [应用数学];
学科分类号
070104 ;
摘要
Computer networks rely on Intrusion Detection Systems (IDSs) and Intrusion Prevention Systems (IPSs) to ensure the security, reliability, and availability of an organization. In recent years, various approaches were developed and implemented to create effective IDSs and IPSs. This paper specifically focuses on IDSs that utilize Machine Learning (ML) techniques for improved accuracy. ML-based IDSs have verified to be successful in discovering network attacks. However, their performance tends to decline when dealing with high-dimensional data spaces. It is essential to develop a suitable feature extraction strategy that could identify and remove irrelevant features that do not significantly classification process to address this issue. Additionally, many ML-based IDSs exhibit high false positive rates and poor detection accuracy when trained on unbalanced datasets. In this study, we analyze the UNSW-NB15 IDS, which will serve as the training and testing data for our models. In order to reduce the feature space and improve the efficiency of our analysis, we leverage a filter-based feature reduction method utilizing the Pearson correlation coefficient algorithm. By identifying and selecting only the most relevant features, we are able to streamline our dataset and focus on the variables that have the highest impact on our analysis. This approach not only reduces computational complexity but also improves the interpretability of our results by eliminating unnecessary noise from the data. After applying the feature reduction technique, we proceed to implement a range of machine learning methods to perform our classification task. These include well-known algorithms such as Stacking, Extra Trees, Multi-Layer Perceptron, XGBoost, K-Nearest Neighbors, Logistic Regression, Na & iuml;ve Bayes, Support Vector Machine, Random Forest, and Decision Tree. By employing a diverse set of algorithms, we are able to explore different modeling approaches and evaluate their effectiveness in accurately classifying the various types of assaults. In order to assess the performance of our classification models, we utilize a range of specialized evaluation metrics such as Root Mean Square Error (RMSE), Mean Absolute Error (MAE), R2-Score, Mean Squared Error (MSE), Precision, F1-Score, Recall, and Accuracy. These metrics provide us with a comprehensive understanding of how well our models are performing across different dimensions, including the accuracy of predictions, the level of precision in classifying different assault types, and the overall goodness-of-fit of our models. By considering multiple evaluation metrics, we are able to gain a more nuanced understanding of the strengths and weaknesses of each algorithm and make informed decisions about their suitability for our classification task. These metrics deliver a complete evaluation of the classifiers' effectiveness in detecting community intrusions.
引用
收藏
页码:2335 / 2352
页数:18
相关论文
共 50 条
  • [21] Multi-agent system for anomaly detection in Industry 4.0 using Machine Learning techniques
    Mateos Garcia, Nuria
    [J]. ADCAIJ-ADVANCES IN DISTRIBUTED COMPUTING AND ARTIFICIAL INTELLIGENCE JOURNAL, 2019, 8 (04): : 33 - 40
  • [22] Network Intrusion Detection Using Machine Learning Anomaly Detection Algorithms
    Hanifi, Khadija
    Bank, Hasan
    Karsligil, M. Elif
    Yavuz, A. Gokhan
    Guvensan, M. Amac
    [J]. 2017 25TH SIGNAL PROCESSING AND COMMUNICATIONS APPLICATIONS CONFERENCE (SIU), 2017,
  • [23] Performance Evaluation of Machine Learning Models for Multi-class Lung Cancer Detection
    Kumar, M. Prema
    Ram, G. Challa
    Ravuri, Viswanadham
    Subbarao, M. Venkata
    Rahaman, Abdul S. K.
    Nandan, T. P. K.
    [J]. 2024 4TH INTERNATIONAL CONFERENCE ON PERVASIVE COMPUTING AND SOCIAL NETWORKING, ICPCSN 2024, 2024, : 414 - 418
  • [24] Anomaly detection in blockchain using network representation and machine learning
    Martin, Kevin
    Rahouti, Mohamed
    Ayyash, Moussa
    Alsmadi, Izzat
    [J]. SECURITY AND PRIVACY, 2022, 5 (02)
  • [25] MULTI-CLASS CREVASSE DETECTION USING GROUND PENETRATING RADAR AND FEATURE-BASED MACHINE LEARNING
    Walker, Benjamin
    Ray, Laura
    [J]. 2019 IEEE INTERNATIONAL GEOSCIENCE AND REMOTE SENSING SYMPOSIUM (IGARSS 2019), 2019, : 3578 - 3581
  • [26] Otitis media detection using tympanic membrane images with a novel multi-class machine learning algorithm
    Alhudhaif, Adi
    Comert, Zafer
    Polat, Kemal
    [J]. PEERJ COMPUTER SCIENCE, 2021,
  • [27] Network Traffic Anomaly Detection using Machine Learning Approaches
    Limthong, Kriangkrai
    Tawsook, Thidarat
    [J]. 2012 IEEE NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM (NOMS), 2012, : 542 - 545
  • [28] Anomaly detection in network traffic using extreme learning machine
    Imamverdiyev, Yadigar
    Sukhostat, Lyudmila
    [J]. 2016 IEEE 10TH INTERNATIONAL CONFERENCE ON APPLICATION OF INFORMATION AND COMMUNICATION TECHNOLOGIES (AICT), 2016, : 418 - 421
  • [29] A Diffusion-Based Framework for Multi-Class Anomaly Detection
    He, Haoyang
    Zhang, Jiangning
    Chen, Hongxu
    Chen, Xuhai
    Li, Zhishan
    Chen, Xu
    Wang, Yabiao
    Wang, Chengjie
    Xie, Lei
    [J]. THIRTY-EIGHTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOL 38 NO 8, 2024, : 8472 - 8480
  • [30] Speech-based detection of multi-class Alzheimer's disease classification using machine learning
    Tripathi, Tripti
    Kumar, Rakesh
    [J]. INTERNATIONAL JOURNAL OF DATA SCIENCE AND ANALYTICS, 2024, 18 (01) : 83 - 96