Explainable AI-based innovative hybrid ensemble model for intrusion detection

被引:0
|
作者
Ahmed, Usman [1 ]
Jiangbin, Zheng [1 ]
Almogren, Ahmad [2 ]
Khan, Sheharyar [1 ]
Sadiq, Muhammad Tariq [3 ,4 ]
Altameem, Ayman [5 ]
Rehman, Ateeq Ur [6 ]
机构
[1] School of Software, Northwestern Polytechnical University, Xian,710072, China
[2] Department of Computer Science, College of Computer and Information Sciences, King Saud University, Riyadh,11633, Saudi Arabia
[3] School of Computer Science and Electronic Engineering, University of Essex, Colchester Campus, Colchester, United Kingdom
[4] Applied Science Research Center, Applied Science Private University, Amman, Jordan
[5] Department of Natural and Engineering Sciences, College of Applied Studies and Community Services, King Saud University, Riyadh,11543, Saudi Arabia
[6] School of Computing, Gachon University, Seongnam-si,13120, Korea, Republic of
关键词
This work was supported by King Saud University; Riyadh; Saudi Arabia; through Researchers Supporting Project number RSP2024R498;
D O I
10.1186/s13677-024-00712-x
中图分类号
学科分类号
摘要
Cybersecurity threats have become more worldly, demanding advanced detection mechanisms with the exponential growth in digital data and network services. Intrusion Detection Systems (IDSs) are crucial in identifying illegitimate access or anomalous behaviour within computer network systems, consequently opposing sensitive information. Traditional IDS approaches often struggle with high false positive rates and the ability to adapt embryonic attack patterns. This work asserts a novel Hybrid Adaptive Ensemble for Intrusion Detection (HAEnID), an innovative and powerful method to enhance intrusion detection, different from the conventional techniques. HAEnID is composed of a string of multi-layered ensemble, which consists of a Stacking Ensemble (SEM), a Bayesian Model Averaging (BMA), and a Conditional Ensemble method (CEM). HAEnID combines the best of these three ensemble techniques for ultimate success in detection with a considerable cut in false alarms. A key feature of HAEnID is an adaptive mechanism that allows ensemble components to change over time as network traffic patterns vary and new threats appear. This way, HAEnID would provide adequate protection as attack vectors change. Furthermore, the model would become more interpretable and explainable using Shapley Additive Explanations (SHAP) and Local Interpretable Model-agnostic Explanations (LIME). The proposed Ensemble model for intrusion detection on CIC-IDS 2017 achieves excellent accuracy (97-98%), demonstrating effectiveness and consistency across various configurations. Feature selection further enhances performance, with BMA-M (20) reaching 98.79% accuracy. These results highlight the potential of the ensemble model for accurate and reliable intrusion detection and, hence, is a state-of-the-art choice for accuracy and explainability.
引用
收藏
相关论文
共 50 条
  • [1] Explainable AI-based Intrusion Detection in the Internet of Things
    Siganos, Marios
    Radoglou-Grammatikis, Panagiotis
    Kotsiuba, Igor
    Markakis, Evangelos
    Moscholios, Ioannis
    Goudos, Sotirios
    Sarigiannidis, Panagiotis
    18TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY & SECURITY, ARES 2023, 2023,
  • [2] Detection of Adversarial Attacks in AI-Based Intrusion Detection Systems Using Explainable AI
    Tcydenova, Erzhena
    Kim, Tae Woo
    Lee, Changhoon
    Park, Jong Hyuk
    HUMAN-CENTRIC COMPUTING AND INFORMATION SCIENCES, 2021, 11
  • [3] Detection of Adversarial Attacks in AI-Based Intrusion Detection Systems Using Explainable AI
    Tcydenova, Erzhena
    Kim, Tae Woo
    Lee, Changhoon
    Park, Jong Hyuk
    Human-centric Computing and Information Sciences, 2021, 11
  • [4] Consensus hybrid ensemble machine learning for intrusion detection with explainable AI
    Ahmed, Usman
    Jiangbin, Zheng
    Khan, Sheharyar
    Sadiq, Muhammad Tariq
    Journal of Network and Computer Applications, 2025, 235
  • [5] An Explainable AI-Based Intrusion Detection System for DNS Over HTTPS (DoH) Attacks
    Zebin, Tahmina
    Rezvy, Shahadate
    Luo, Yuan
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2022, 17 : 2339 - 2349
  • [6] The Need for Practical Legal and Ethical Guidelines for Explainable AI-based Network Intrusion Detection Systems
    Pawlicka, Aleksandra
    Pawlicki, Marek
    Kozik, Rafal
    Choras, Michal
    2023 23RD IEEE INTERNATIONAL CONFERENCE ON DATA MINING WORKSHOPS, ICDMW 2023, 2023, : 253 - 261
  • [7] Explainable AI-Based Ensemble Clustering for Load Profiling and Demand Response
    Sarmas, Elissaios
    Fragkiadaki, Afroditi
    Marinakis, Vangelis
    Energies, 2024, 17 (22)
  • [8] An Explainable AI-Based Fault Diagnosis Model for Bearings
    Hasan, Md Junayed
    Sohaib, Muhammad
    Kim, Jong-Myon
    SENSORS, 2021, 21 (12)
  • [9] CardioRiskNet: A Hybrid AI-Based Model for Explainable Risk Prediction and Prognosis in Cardiovascular Disease
    Talaat, Fatma M.
    Elnaggar, Ahmed R.
    Shaban, Warda M.
    Shehata, Mohamed
    Elhosseini, Mostafa
    BIOENGINEERING-BASEL, 2024, 11 (08):
  • [10] AI-based Intrusion Detection for Intelligence Internet of Vehicles
    Man, Dapeng
    Zeng, Fanyi
    Lv, Jiguang
    Xuan, Shichang
    Yang, Wu
    Guizani, Mohsen
    IEEE CONSUMER ELECTRONICS MAGAZINE, 2023, 12 (01) : 109 - 116