Enhancing the Sustainability of Deep-Learning-Based Network Intrusion Detection Classifiers against Adversarial Attacks

被引:7
|
作者
Alotaibi, Afnan [1 ]
Rassam, Murad A. [1 ,2 ]
机构
[1] Qassim Univ, Coll Comp, Dept Informat Technol, Buraydah 51452, Saudi Arabia
[2] Taiz Univ, Fac Engn & Informat Technol, Taizi 6803, Yemen
关键词
sustainability; adversarial machine learning; network intrusion detection system; convolutional neural network; network security; APE_GAN plus plus; deep learning; DETECTION SYSTEMS;
D O I
10.3390/su15129801
中图分类号
X [环境科学、安全科学];
学科分类号
08 ; 0830 ;
摘要
An intrusion detection system (IDS) is an effective tool for securing networks and a dependable technique for improving a user's internet security. It informs the administration whenever strange conduct occurs. An IDS fundamentally depends on the classification of network packets as benign or attack. Moreover, IDSs can achieve better results when built with machine learning (ML)/deep learning (DL) techniques, such as convolutional neural networks (CNNs). However, there is a limitation when building a reliable IDS using ML/DL techniques, which is their vulnerability to adversarial attacks. Such attacks are crafted by attackers to compromise the ML/DL models, which affects their accuracy. Thus, this paper describes the construction of a sustainable IDS based on the CNN technique, and it presents a method for defense against adversarial attacks that enhances the IDS's accuracy and ensures it is more reliable in performing classification. To achieve this goal, first, two IDS models with a convolutional neural network (CNN) were built to enhance the IDS accuracy. Second, seven adversarial attack scenarios were designed against the aforementioned CNN-based IDS models to test their reliability and efficiency. The experimental results show that the CNN-based IDS models achieved significant increases in the intrusion detection system accuracy of 97.51% and 95.43% compared with the scores before the adversarial scenarios were applied. Furthermore, it was revealed that the adversarial attacks caused the models' accuracy to significantly decrease from one attack scenario to another. The Auto-PGD and BIM attacks had the strongest effect against the CNN-based IDS models, with accuracy drops of 2.92% and 3.46%, respectively. Third, this research applied the adversarial perturbation elimination with generative adversarial nets (APE_GAN++) defense method to enhance the accuracy of the CNN-based IDS models after they were affected by adversarial attacks, which was shown to increase after the adversarial attacks in an intelligible way, with accuracy scores ranging between 78.12% and 89.40%.
引用
收藏
页数:25
相关论文
共 50 条
  • [1] Adversarial Attacks Against Deep Learning-Based Network Intrusion Detection Systems and Defense Mechanisms
    Zhang, Chaoyun
    Costa-Perez, Xavier
    Patras, Paul
    [J]. IEEE-ACM TRANSACTIONS ON NETWORKING, 2022, 30 (03) : 1294 - 1311
  • [2] Preventing Adversarial Attacks Against Deep Learning-Based Intrusion Detection System
    Nguyen, Xuan-Ha
    Nguyen, Xuan-Duong
    Le, Kim-Hung
    [J]. INFORMATION SECURITY PRACTICE AND EXPERIENCE, ISPEC 2022, 2022, 13620 : 382 - 396
  • [3] Network Intrusion Detection Adversarial Attacks for LEO Constellation Networks Based on Deep Learning
    Li, Yunhao
    Mo, Weichuan
    Li, Cong
    Wang, Haiyang
    He, Jianwei
    Hao, Shanshan
    Yan, Hongyang
    [J]. NETWORK AND SYSTEM SECURITY, NSS 2022, 2022, 13787 : 51 - 65
  • [4] Evading Deep Reinforcement Learning-based Network Intrusion Detection with Adversarial Attacks
    Merzouk, Mohamed Amine
    Delas, Josephine
    Neal, Christopher
    Cuppens, Frederic
    Boulahia-Cuppens, Nora
    Yaich, Reda
    [J]. PROCEEDINGS OF THE 17TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, ARES 2022, 2022,
  • [5] Adversarial attacks against supervised machine learning based network intrusion detection systems
    Alshahrani, Ebtihaj
    Alghazzawi, Daniyal
    Alotaibi, Reem
    Rabie, Osama
    [J]. PLOS ONE, 2022, 17 (10):
  • [6] Adversarial Examples Against the Deep Learning Based Network Intrusion Detection Systems
    Yang, Kaichen
    Liu, Jianqing
    Zhang, Chi
    Fang, Yuguang
    [J]. 2018 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM 2018), 2018, : 559 - 564
  • [7] Analyzing Adversarial Attacks Against Deep Learning for Intrusion Detection in IoT Networks
    Ibitoye, Olakunle
    Shafiq, Omair
    Matrawy, Ashraf
    [J]. 2019 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2019,
  • [8] Deep-Learning-Based Network Intrusion Detection for SCADA Systems
    Yang, Huan
    Cheng, Liang
    Chuah, Mooi Choo
    [J]. 2019 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2019,
  • [9] Defending against Deep-Learning-Based Flow Correlation Attacks with Adversarial Examples
    Zhang, Ziwei
    Ye, Dengpan
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2022, 2022
  • [10] Enhancing network intrusion detection classifiers using supervised adversarial training
    Yin, Chuanlong
    Zhu, Yuefei
    Liu, Shengli
    Fei, Jinlong
    Zhang, Hetong
    [J]. JOURNAL OF SUPERCOMPUTING, 2020, 76 (09): : 6690 - 6719