A Multiagent and Machine Learning based Hybrid NIDS for Known and Unknown Cyber-attacks

被引:0
|
作者
Ouiazzane, Said [1 ]
Addou, Malika [1 ]
Barramou, Fatimazahra [1 ]
机构
[1] Hassania Sch Publ Works EHTP, ASYR Team, Lab Syst Engn LaGeS, Casablanca, Morocco
关键词
Intrusion detection; zero-day attacks; machine learning; multi-agent systems; security;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The objective of this paper is to propose a hybrid Network Intrusion Detection System (NIDS) for the detection of cyber-attacks that may target modern computer networks. Indeed, in the era of technological evolution that the world is currently experiencing, hackers are constantly inventing new attack mechanisms that can bypass traditional security systems. Thus, NIDS are now an essential security brick to be deployed in corporate networks to detect known and zero-day attacks. In this research work, we propose a hybrid NIDS model based on the use of both a signature-based NIDS and an anomaly detection NIDS. The proposed system is based on agent technology, SNORT signature-based NIDS, machine learning techniques and the CICIDS2017 dataset is used for training and evaluation purposes. Thus, the CICIDS2017 dataset has undergone several pre-processing actions, namely, dataset cleaning, and dataset balancing as well as reducing the number of attributes (from 79 to 33 attributes). In addition, a set of machine learning algorithms are used, such as decision tree, random forest, Naive Bayes and multilayer perceptron, and are evaluated using some metrics, such as recall, precision, F-measure and accuracy. The detection methods used give very satisfactory results in terms of modeling benign network traffic and the accuracy reaches 99.9% for some algorithms.
引用
收藏
页码:375 / 382
页数:8
相关论文
共 50 条
  • [21] Hybrid DeepGCL model for cyber-attacks detection on cyber-physical systems
    Alguliyev, Rasim
    Imamverdiyev, Yadigar
    Sukhostat, Lyudmila
    NEURAL COMPUTING & APPLICATIONS, 2021, 33 (16): : 10211 - 10226
  • [22] Hybrid DeepGCL model for cyber-attacks detection on cyber-physical systems
    Alguliyev, Rasim
    Imamverdiyev, Yadigar
    Sukhostat, Lyudmila
    Neural Computing and Applications, 2021, 33 (16) : 10211 - 10226
  • [23] A Decentralized Functional Observer Based Optimal LFC Considering Unknown Inputs, Uncertainties, and Cyber-Attacks
    Alhelou, Hassan Haes
    Golshan, Mohamad Esmail Hamedani
    Hatziargyriou, Nikos D.
    IEEE TRANSACTIONS ON POWER SYSTEMS, 2019, 34 (06) : 4408 - 4417
  • [24] Hybrid Cyber-Security Model for Attacks Detection Based on Deep and Machine Learning
    Naser, Shaymaa Mahmood
    Ali, Yossra Hussain
    Obe, Dhiya Al-Jumeily
    INTERNATIONAL JOURNAL OF ONLINE AND BIOMEDICAL ENGINEERING, 2022, 18 (11) : 17 - 30
  • [25] Coordinated Cyber-Attacks on the Measurement Function in Hybrid State Estimation
    Chakhchoukh, Yacine
    Ishii, Hideaki
    IEEE TRANSACTIONS ON POWER SYSTEMS, 2015, 30 (05) : 2487 - 2497
  • [26] Effects of Cyber-Attacks on the Energy Storage in a Hybrid Power System
    Ghosh, Sagnika
    Ali, Mohd. Hasan
    Dasgupta, Dipankar
    2018 IEEE POWER & ENERGY SOCIETY GENERAL MEETING (PESGM), 2018,
  • [27] Hybrid war and cyber-attacks: creating legal and operational dilemmas
    Simons, Greg
    Danyk, Yuriy
    Maliarchuk, Tamara
    GLOBAL CHANGE PEACE & SECURITY, 2020, 32 (03) : 337 - 342
  • [28] Hybrid Detection of Intermittent Cyber-Attacks in Networked Power Systems
    Kontouras, Efstathios
    Tzes, Anthony
    Dritsas, Leonidas
    ENERGIES, 2019, 12 (24)
  • [29] A Hybrid Framework for Detecting and Eliminating Cyber-Attacks in Power Grids
    Aflaki, Arshia
    Gitizadeh, Mohsen
    Razavi-Far, Roozbeh
    Palade, Vasile
    Ghasemi, Ali Akbar
    ENERGIES, 2021, 14 (18)
  • [30] Distributed Sliding-Mode Consensus Tracking Control for Fuzzy Delayed Multiagent Systems Under Hybrid Cyber-Attacks
    Hua, Lanfeng
    Zhong, Qishui
    Soh, Yeng Chai
    Shi, Kaibo
    Kwon, Oh-Min
    Yan, Lei
    Zhong, Shouming
    IEEE TRANSACTIONS ON FUZZY SYSTEMS, 2024, 32 (06) : 3471 - 3483