A simple framework to enhance the adversarial robustness of deep learning-based intrusion detection system

被引:5
|
作者
Yuan, Xinwei [1 ]
Han, Shu [1 ]
Huang, Wei [2 ]
Ye, Hongliang [1 ]
Kong, Xianglong [2 ]
Zhang, Fan [3 ]
机构
[1] Southeast Univ, Nanjing, Peoples R China
[2] Purple Mt Labs, Nanjing, Peoples R China
[3] Natl Digital Switching Syst & Engn Technol Res Ctr, Zhengzhou, Peoples R China
关键词
Intrusion detection system; Adversarial example; Adversarial detection; Adversarial defense; Deep learning; Machine learning;
D O I
10.1016/j.cose.2023.103644
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Deep learning based intrusion detection systems (DL-based IDS) have emerged as one of the best choices for providing security solutions against various network intrusion attacks. However, due to the emergence and development of adversarial deep learning technologies, it becomes challenging for the adoption of DL models into IDS. In this paper, we propose a novel IDS architecture that can enhance the robustness of IDS against adversarial attacks by combining conventional machine learning (ML) models and Deep Learning models. The proposed DLL-IDS consists of three components: DL-based IDS, adversarial example (AE) detector, and ML-based IDS. We first develop a novel AE detector based on the local intrinsic dimensionality (LID). Then, we exploit the low attack transferability between DL models and ML models to find a robust ML model that can assist us in determining the maliciousness of AEs. If the input traffic is detected as an AE, the ML-based IDS will predict the maliciousness of input traffic, otherwise the DL-based IDS will work for the prediction. The fusion mechanism can leverage the high prediction accuracy of DL models and low attack transferability between DL models and ML models to improve the robustness of the whole system. In our experiments, we observe a significant improvement in the prediction performance of the IDS when subjected to adversarial attack, achieving high accuracy with low resource consumption.
引用
收藏
页数:12
相关论文
共 50 条
  • [1] Adversarial robustness of deep reinforcement learning-based intrusion detection
    Merzouk, Mohamed Amine
    Neal, Christopher
    Delas, Josephine
    Yaich, Reda
    Boulahia-Cuppens, Nora
    Cuppens, Frederic
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2024, : 3625 - 3651
  • [2] Preventing Adversarial Attacks Against Deep Learning-Based Intrusion Detection System
    Nguyen, Xuan-Ha
    Nguyen, Xuan-Duong
    Le, Kim-Hung
    INFORMATION SECURITY PRACTICE AND EXPERIENCE, ISPEC 2022, 2022, 13620 : 382 - 396
  • [3] Evading Deep Reinforcement Learning-based Network Intrusion Detection with Adversarial Attacks
    Merzouk, Mohamed Amine
    Delas, Josephine
    Neal, Christopher
    Cuppens, Frederic
    Boulahia-Cuppens, Nora
    Yaich, Reda
    PROCEEDINGS OF THE 17TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, ARES 2022, 2022,
  • [4] Deep Learning-Based Intrusion Detection System for Internet of Vehicles
    Ahmed, Imran
    Jeon, Gwanggil
    Ahmad, Awais
    IEEE CONSUMER ELECTRONICS MAGAZINE, 2023, 12 (01) : 117 - 123
  • [5] Deep Learning-Based Hybrid Intelligent Intrusion Detection System
    Khan, Muhammad Ashfaq
    Kim, Yangwoo
    CMC-COMPUTERS MATERIALS & CONTINUA, 2021, 68 (01): : 671 - 687
  • [6] Achieving Adversarial Robustness in Deep Learning-Based Overhead Imaging
    Braun, Dagen
    Reisman, Matthew
    Dewell, Larry
    Banburski-Fahey, Andrzej
    Deza, Arturo
    Poggio, Tomaso
    2022 IEEE APPLIED IMAGERY PATTERN RECOGNITION WORKSHOP, AIPR, 2022,
  • [7] Deep Learning-Based Intrusion Detection with Adversaries
    Wang, Zheng
    IEEE ACCESS, 2018, 6 : 38367 - 38384
  • [8] Evaluating and Improving Adversarial Robustness of Machine Learning-Based Network Intrusion Detectors
    Han, Dongqi
    Wang, Zhiliang
    Zhong, Ying
    Chen, Wenqi
    Yang, Jiahai
    Lu, Shuqiang
    Shi, Xingang
    Yin, Xia
    IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2021, 39 (08) : 2632 - 2647
  • [9] A Deep Learning-Based Framework for Feature Extraction and Classification of Intrusion Detection in Networks
    Naveed, Muhammad
    Arif, Fahim
    Usman, Syed Muhammad
    Anwar, Aamir
    Hadjouni, Myriam
    Elmannai, Hela
    Hussain, Saddam
    Ullah, Syed Sajid
    Umar, Fazlullah
    WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2022, 2022
  • [10] ENIDS: A Deep Learning-Based Ensemble Framework for Network Intrusion Detection Systems
    Sayem I.M.
    Sayed M.I.
    Saha S.
    Haque A.
    IEEE Transactions on Network and Service Management, 2024, 21 (05): : 1 - 1