Optimizing anomaly-based attack detection using classification machine learning

被引:1
|
作者
Gouda, Hany Abdelghany [1 ]
Ahmed, Mohamed Abdelslam [1 ]
Roushdy, Mohamed Ismail [2 ]
机构
[1] Helwan Univ, Fac Commerce & Business Adm, Dept Informat Syst, Cairo, Egypt
[2] Future Univ Egypt, Fac Comp & Informat Technol, Comp Sci Dept, Cairo, Egypt
来源
NEURAL COMPUTING & APPLICATIONS | 2024年 / 36卷 / 06期
关键词
Intrusion detection; Detection techniques and methodologies; Classical Machine learning algorithms; Neural network and dataset;
D O I
10.1007/s00521-023-09309-y
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
One of the significant aspects of our digital world is that data are literally everywhere, and it is increasing. On the other hand, the number of cyberattacks aiming to seize this data and use it illegally is increasing at an exponential rate, and this is the challenge. Therefore, intrusion detection systems (IDS) have attracted considerable interest from researchers and industries. In this regard, machine learning (ML) techniques are playing a pivotal role as they put the responsibility of analyzing enormous amounts of data, finding patterns, classifying intrusions, and solving issues on computers instead of humans. This paper implements two separate classification layers of ML-based algorithms with the recently published NF-UQ-NIDS-v2 dataset, preprocessing two volumes of sample records (100 k and 10 million), utilizing MinMaxScaler, LabelEncoder, selecting superlative features by recursive feature elimination, normalizing the data, and optimizing hyper-parameters for classical algorithms and neural networks. With a small dataset volume, the results of the classical algorithms layer show high detection accuracy rates for support vector (98.26%), decision tree (98.78%), random forest (99.07%), K-nearest neighbors (98.16%), CatBoost (99.04%), and gradient boosting (98.80%). In addition, the layer of neural network algorithms has proven to be a very powerful technology when using deep learning, particularly due to its unique ability to effectively handle enormous amounts of data and detect hidden correlations and patterns; it showed high detection results, which were (98.87%) for long short-term memory and (98.56%) for convolutional neural networks.
引用
收藏
页码:3239 / 3257
页数:19
相关论文
共 50 条
  • [1] Optimizing anomaly-based attack detection using classification machine learning
    Hany Abdelghany Gouda
    Mohamed Abdelslam Ahmed
    Mohamed Ismail Roushdy
    [J]. Neural Computing and Applications, 2024, 36 : 3239 - 3257
  • [2] Anomaly-Based Intrusion Detection Using Machine Learning: An Ensemble Approach
    Lalduhsaka R.
    Bora N.
    Khan A.K.
    [J]. International Journal of Information Security and Privacy, 2022, 16 (01):
  • [3] Collaborative anomaly-based attack detection
    Gamer, Thomas
    Scharf, Michael
    Schoeller, Marcus
    [J]. SELF-ORGANIZING SYSTEMS, PROCEEDINGS, 2007, 4725 : 280 - +
  • [4] Anomaly-Based Web Attack Detection: A Deep Learning Approach
    Liang, Jingxi
    Zhao, Wen
    Ye, Wei
    [J]. PROCEEDINGS OF 2017 VI INTERNATIONAL CONFERENCE ON NETWORK, COMMUNICATION AND COMPUTING (ICNCC 2017), 2017, : 80 - 85
  • [5] Anomaly-based Network Intrusion Detection using Ensemble Machine Learning Approach
    Das, Abhijit
    Pramod
    Sunitha, B. S.
    [J]. INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2022, 13 (02) : 635 - 645
  • [6] Panacea: Automating Attack Classification for Anomaly-Based Network Intrusion Detection Systems
    Bolzoni, Damiano
    Etalle, Sandro
    Hartel, Pieter H.
    [J]. RECENT ADVANCES IN INTRUSION DETECTION, PROCEEDINGS, 2009, 5758 : 1 - 20
  • [7] Anomaly-based intrusion detection system in IoT using kernel extreme learning machine
    Bacha S.
    Aljuhani A.
    Abdellafou K.B.
    Taouali O.
    Liouane N.
    Alazab M.
    [J]. Journal of Ambient Intelligence and Humanized Computing, 2024, 15 (1) : 231 - 242
  • [8] Anomaly-based intrusion detection system in IoT using kernel extreme learning machine
    Bacha, Sawssen
    Aljuhani, Ahamed
    Abdellafou, Khawla Ben
    Taouali, Okba
    Liouane, Noureddine
    Alazab, Mamoun
    [J]. Journal of Ambient Intelligence and Humanized Computing, 2024, 15 (01) : 231 - 242
  • [9] Into the Unknown: Unsupervised Machine Learning Algorithms for Anomaly-Based Intrusion Detection
    Zoppi, Tommaso
    Ceccarelli, Andrea
    Bondavalli, Andrea
    [J]. 2020 50TH ANNUAL IEEE-IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS-SUPPLEMENTAL VOLUME (DSN-S), 2020, : 81 - 81
  • [10] Anomaly-Based Intrusion Detection System for DDoS Attack with Deep Learning Techniques
    Agostinello, Davide
    Genovese, Angelo
    Piuri, Vincenzo
    [J]. PROCEEDINGS OF THE 20TH INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY, SECRYPT 2023, 2023, : 267 - 275