A tree-based stacking ensemble technique with feature selection for network intrusion detection

被引:57
|
作者
Rashid, Mamunur [1 ]
Kamruzzaman, Joarder [2 ]
Imam, Tasadduq [3 ]
Wibowo, Santoso [1 ]
Gordon, Steven [1 ]
机构
[1] CQUniversity, Sch Engn & Technol, Rockhampton, Qld, Australia
[2] Federat Univ, Sch Engn & Informat Technol, Ballarat, Vic, Australia
[3] CQUniversity, Sch Business & Law, Melbourne, Vic, Australia
关键词
Machine learning; Ensemble techniques; Anomaly detection; Cybersecurity; Intrusion detection seystem; CLASSIFIER;
D O I
10.1007/s10489-021-02968-1
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Several studies have used machine learning algorithms to develop intrusion systems (IDS), which differentiate anomalous behaviours from the normal activities of network systems. Due to the ease of automated data collection and subsequently an increased size of collected data on network traffic and activities, the complexity of intrusion analysis is increasing exponentially. A particular issue, due to statistical and computation limitations, a single classifier may not perform well for large scale data as existent in modern IDS contexts. Ensemble methods have been explored in literature in such big data contexts. Although more complicated and requiring additional computation, literature has a note that ensemble methods can result in better accuracy than single classifiers in different large scale data classification contexts, and it is interesting to explore how ensemble approaches can perform in IDS. In this research, we introduce a tree-based stacking ensemble technique (SET) and test the effectiveness of the proposed model on two intrusion datasets (NSL-KDD and UNSW-NB15). We further enhance incorporate feature selection techniques to select the best relevant features with the proposed SET. A comprehensive performance analysis shows that our proposed model can better identify the normal and anomaly traffic in network than other existing IDS models. This implies the potentials of our proposed system for cybersecurity in Internet of Things (IoT) and large scale networks.
引用
收藏
页码:9768 / 9781
页数:14
相关论文
共 50 条
  • [31] Automatic feature subset selection for decision tree-based ensemble methods in the prediction of bioactivity
    Cao, Dong-Sheng
    Xu, Qing-Song
    Liang, Yi-Zeng
    Chen, Xian
    Li, Hong-Dong
    CHEMOMETRICS AND INTELLIGENT LABORATORY SYSTEMS, 2010, 103 (02) : 129 - 136
  • [32] A Hybrid Intrusion Detection System Based on Feature Selection and Weighted Stacking Classifier
    Zhao, Ruizhe
    Mu, Yingxue
    Zou, Long
    Wen, Xiumei
    IEEE ACCESS, 2022, 10 : 71414 - 71426
  • [33] An improved PIO feature selection algorithm for IoT network intrusion detection system based on ensemble learning
    Abu Alghanam, Orieb
    Almobaideen, Wesam
    Saadeh, Maha
    Adwan, Omar
    EXPERT SYSTEMS WITH APPLICATIONS, 2023, 213
  • [34] Advanced Feature-Selection-Based Hybrid Ensemble Learning Algorithms for Network Intrusion Detection Systems
    Mhawi, Doaa N.
    Aldallal, Ammar
    Hassan, Soukeana
    SYMMETRY-BASEL, 2022, 14 (07):
  • [35] Euclidean-based Feature Selection for Network Intrusion Detection
    Suebsing, Anirut
    Hiransakolwong, Nualsawat
    PROCEEDINGS OF 2009 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND COMPUTING (IACSIT ICMLC 2009), 2009, : 222 - 229
  • [36] A Lightweight Network Intrusion Detection Model Based on Feature Selection
    Dai Hong
    Li Haibo
    IEEE 15TH PACIFIC RIM INTERNATIONAL SYMPOSIUM ON DEPENDABLE COMPUTING, PROCEEDINGS, 2009, : 165 - +
  • [37] Firefly algorithm based feature selection for network intrusion detection
    Selvakumar, B.
    Muneeswaran, K.
    COMPUTERS & SECURITY, 2019, 81 : 148 - 155
  • [38] Network Intrusion Detection Based on LDA for Payload Feature Selection
    Tan, Zhiyuan
    Jamdagni, Aruna
    He, Xiangjian
    Nanda, Priyadarsi
    2010 IEEE GLOBECOM WORKSHOPS, 2010, : 1545 - 1549
  • [39] A Stacking Ensemble for Network Intrusion Detection Using Heterogeneous Datasets
    Rajagopal, Smitha
    Kundapur, Poornima Panduranga
    Hareesha, Katiganere Siddaramappa
    SECURITY AND COMMUNICATION NETWORKS, 2020, 2020
  • [40] Robust Detection of Network Intrusion using Tree-based Convolutional Neural Networks
    Mishra, Sanket
    Dwivedula, Rohit
    Kshirsagar, Varad
    Hota, Chittaranjan
    CODS-COMAD 2021: PROCEEDINGS OF THE 3RD ACM INDIA JOINT INTERNATIONAL CONFERENCE ON DATA SCIENCE & MANAGEMENT OF DATA (8TH ACM IKDD CODS & 26TH COMAD), 2021, : 233 - 237