Few Edges are Enough: Few-Shot Network Attack Detection with Graph Neural Networks

被引:0
|
作者
Bilot, Tristan [1 ,2 ,3 ]
El Madhoun, Nour [3 ,4 ]
Al Agha, Khaldoun [1 ]
Zouaoui, Anis [2 ]
机构
[1] Univ Paris Saclay, CNRS, Lab Interdisciplinaire Sci Numer, Gif Sur Yvette, France
[2] Iriguard, Puteaux La Defense, France
[3] ISEP Inst Super Elect Paris, LISITE Lab, Issy Les Moulineaux, France
[4] Sorbonne Univ, CNRS, LIP6, Paris, France
关键词
Attack Detection; Network Security; Few-shot Learning; Self-Supervised Learning; Graph Neural Networks;
D O I
10.1007/978-981-97-7737-2_15
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Detecting cyberattacks using Graph Neural Networks (GNNs) has seen promising results recently. Most of the state-of-the-art models that leverage these techniques require labeled examples, hard to obtain in many real-world scenarios. To address this issue, unsupervised learning and Self-Supervised Learning (SSL) have emerged as interesting approaches to reduce the dependency on labeled data. Nonetheless, these methods tend to yield more anomalous detection algorithms rather than effective attack detection systems. This paper introduces Few Edges Are Enough (FEAE), a GNN-based architecture trained with SSL and Few-Shot Learning (FSL) to better distinguish between false positive anomalies and actual attacks. To maximize the potential of fewshot examples, our model employs a hybrid self-supervised objective that combines the advantages of contrastive-based and reconstruction-based SSL. By leveraging only a minimal number of labeled attack events, represented as attack edges, FEAE achieves competitive performance on two well-known network datasets compared to both supervised and unsupervised methods. Remarkably, our experimental results unveil that employing only 1 malicious event for each attack type in the dataset is sufficient to achieve substantial improvements. FEAE not only outperforms self-supervised GNN baselines but also surpasses some supervised approaches on one of the datasets.
引用
收藏
页码:257 / 276
页数:20
相关论文
共 50 条
  • [41] Robust Few-Shot Graph Anomaly Detection via Graph Coarsening
    Li, Liting
    Sun, Yueheng
    Li, Tianpeng
    Shao, Minglai
    KNOWLEDGE SCIENCE, ENGINEERING AND MANAGEMENT, PT I, KSEM 2023, 2023, 14117 : 414 - 429
  • [42] Learning Dual-Pooling Graph Neural Networks for Few-Shot Video Classification
    Hu, Yufan
    Gao, Junyu
    Xu, Changsheng
    IEEE TRANSACTIONS ON MULTIMEDIA, 2021, 23 : 4285 - 4296
  • [43] Few-shot logo detection
    Hou, Sujuan
    Liu, Wenjie
    Karim, Awudu
    Jia, Zhixiang
    Jia, Weikuan
    Zheng, Yuanjie
    IET COMPUTER VISION, 2023, 17 (05) : 586 - 598
  • [44] Geometric algebra graph neural network for cross-domain few-shot classification
    Qifan Liu
    Wenming Cao
    Applied Intelligence, 2022, 52 : 12422 - 12435
  • [45] LGLNN: Label Guided Graph Learning-Neural Network for few-shot learning
    Zhao, Kangkang
    Zhang, Ziyan
    Jiang, Bo
    Tang, Jin
    NEURAL NETWORKS, 2022, 155 : 50 - 57
  • [46] Few-Shot Image Classification Algorithm of Graph Neural Network Based on Swin Transformer
    Wang Kai
    Ren Jie
    Zhang Weichuan
    LASER & OPTOELECTRONICS PROGRESS, 2024, 61 (12)
  • [47] Geometric algebra graph neural network for cross-domain few-shot classification
    Liu, Qifan
    Cao, Wenming
    APPLIED INTELLIGENCE, 2022, 52 (11) : 12422 - 12435
  • [48] DouN-GNN:Double nodes graph neural network for few-shot learning
    Zhang, Yan
    Zhou, Xudong
    Wang, Nian
    Tang, Jun
    Xuan, Tao
    NEUROCOMPUTING, 2025, 617
  • [49] Negative-supervised capsule graph neural network for few-shot text classification
    Ding, Ling
    Chen, Xiaojun
    Xiang, Yang
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2021, 41 (06) : 6875 - 6887
  • [50] Position-Aware Graph Neural Network for Few-Shot SAR Target Classification
    Zheng, Jia
    Li, Ming
    Zhang, Peng
    Wu, Yan
    Chen, Hongmeng
    IEEE JOURNAL OF SELECTED TOPICS IN APPLIED EARTH OBSERVATIONS AND REMOTE SENSING, 2024, 17 : 8028 - 8042