A Framework for Generating Evasion Attacks for Machine Learning Based Network Intrusion Detection Systems

被引:0
|
作者
Mogg, Raymond [1 ]
Enoch, Simon Yusuf [1 ,2 ]
Kim, Dong Seong [1 ]
机构
[1] Univ Queensland, St Lucia, Qld 4072, Australia
[2] Fed Univ, Kashere, Gombe State, Nigeria
来源
关键词
Adversarial machine learning; Evasion attacks; Genetic algorithms; Intrusion detection;
D O I
10.1007/978-3-030-89432-0_5
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Intrusion Detection System (IDS) plays a vital role in detecting anomalies and cyber-attacks in networked systems. However, sophisticated attackers can manipulate the IDS' attacks samples to evade possible detection. In this paper, we present a network-based IDS and investigate the viability of generating interpretable evasion attacks against the IDS through the application of a machine learning technique and an evolutionary algorithm. We employ a genetic algorithm to generate optimal attack features for certain attack categories, which are evaluated against a decision tree-based IDS in terms of their fitness measurements. To demonstrate the feasibility of our approach, we perform experiments based on the NSL-KDD dataset and analyze the algorithm performance.
引用
收藏
页码:51 / 63
页数:13
相关论文
共 50 条
  • [11] Machine Learning-Based Intrusion Detection for Rare-Class Network Attacks
    Yang, Yu
    Gu, Yuheng
    Yan, Yu
    ELECTRONICS, 2023, 12 (18)
  • [12] Hybrid Method for the Detection of Evasion Attacks Aimed at Machine Learning Systems
    M. O. Kalinin
    A. F. Suprun
    O. D. Ivanova
    Automatic Control and Computer Sciences, 2023, 57 : 983 - 988
  • [13] Hybrid Method for the Detection of Evasion Attacks Aimed at Machine Learning Systems
    Kalinin, M. O.
    Suprun, A. F.
    Ivanova, O. D.
    AUTOMATIC CONTROL AND COMPUTER SCIENCES, 2023, 57 (08) : 983 - 988
  • [14] Machine Learning Based Network Intrusion Detection
    Lee, Chie-Hong
    Su, Yann-Yean
    Lin, Yu-Chun
    Lee, Shie-Jue
    2017 2ND IEEE INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND APPLICATIONS (ICCIA), 2017, : 79 - 83
  • [15] A Novel Framework Design of Network Intrusion Detection Based on Machine Learning Techniques
    Zhang, Chongzhen
    Chen, Yanli
    Meng, Yang
    Ruan, Fangming
    Chen, Runze
    Li, Yidan
    Yang, Yaru
    SECURITY AND COMMUNICATION NETWORKS, 2021, 2021
  • [16] A Novel Framework Design of Network Intrusion Detection Based on Machine Learning Techniques
    Zhang, Chongzhen
    Chen, Yanli
    Meng, Yang
    Ruan, Fangming
    Chen, Runze
    Li, Yidan
    Yang, Yaru
    Security and Communication Networks, 2021, 2021
  • [17] Poisoning Attacks and Data Sanitization Mitigations for Machine Learning Models in Network Intrusion Detection Systems
    Venkatesan, Sridhar
    Sikka, Harshvardhan
    Izmailov, Rauf
    Chadha, Ritu
    Oprea, Alina
    de Lucia, Michael J.
    2021 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM 2021), 2021,
  • [18] Investigating the practicality of adversarial evasion attacks on network intrusion detection
    Merzouk, Mohamed Amine
    Cuppens, Frederic
    Boulahia-Cuppens, Nora
    Yaich, Reda
    ANNALS OF TELECOMMUNICATIONS, 2022, 77 (11-12) : 763 - 775
  • [19] Investigating the practicality of adversarial evasion attacks on network intrusion detection
    Mohamed Amine Merzouk
    Frédéric Cuppens
    Nora Boulahia-Cuppens
    Reda Yaich
    Annals of Telecommunications, 2022, 77 : 763 - 775
  • [20] Adversarial machine learning in Network Intrusion Detection Systems
    Alhajjar, Elie
    Maxwell, Paul
    Bastian, Nathaniel
    EXPERT SYSTEMS WITH APPLICATIONS, 2021, 186