A double-layer detection and classification approach for network attacks

被引:0
|
作者
Sun, Chong [1 ]
Lv, Kun [1 ]
Hu, Changzhen [1 ]
Xie, Hui [1 ]
机构
[1] Beijing Inst Technol, Sch Comp Sci & Technol, Beijing, Peoples R China
关键词
Network intrusion detection system; GBDT; Stacking ensemble model; KDD99;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Network intrusion detection system (NIDS) plays a crucial role in maintaining network security. In this paper, we propose a novel double-layer detection and classification technique for network attacks. The advantage of our proposed method is that our two-layer hybird detection combines the advantage of multiple techniques, especially stacking ensemble method, and has better generalization performance. The first layer contains a GBDT classifier which is responsible for identifying DoS (Denial of Service) attacks. The second layer consists of KNN classifier and stacking ensemble classifier. KNN classifier is used to classify the DoS data from the first layer as more subtypes, such as, smurf, pod, neptune, teardrop, back and other DoS attack subtypes. Stacking ensemble classifier optimized by FOA (Fly Optimization Algorithm) is applied to divide the non-DoS data from the first layer to Normal, Probe, R2L (Remote to Local) and U2L (User to Root). The simulation and analysis are done based on KDD99 dataset and we use accuracy, precision rate and recall rate to evaluate our method. The experimental results suggest that our proposed method is a more robust and reliable model and can achieve higher accuracy than other previous methods.
引用
收藏
页数:8
相关论文
共 50 条
  • [41] Improved vehicle detection systems with double-layer LSTM modules
    Wei-Jong Yang
    Wan-Ju Liow
    Shao-Fu Chen
    Jar-Ferr Yang
    Pau-Choo Chung
    Songan Mao
    EURASIP Journal on Advances in Signal Processing, 2022
  • [42] From electric double-layer to pseudocapacitance: A joint DFT approach
    Jiang, De-en
    ABSTRACTS OF PAPERS OF THE AMERICAN CHEMICAL SOCIETY, 2016, 252
  • [43] DOUBLE-LAYER IMPEDANCE AT A ROUGH-SURFACE - A PERTURBATIVE APPROACH
    HALSEY, TC
    PHYSICAL REVIEW A, 1987, 36 (12): : 5877 - 5880
  • [44] IONIC TRANSPORT IN ELECTROCHEMICAL-CELLS INCLUDING ELECTRICAL DOUBLE-LAYER EFFECTS - A NETWORK THERMODYNAMICS APPROACH
    MOYA, AA
    CASTILLA, J
    HORNO, J
    JOURNAL OF PHYSICAL CHEMISTRY, 1995, 99 (04): : 1292 - 1298
  • [45] Integrated approach to the detection of distributed network attacks
    Gulmira, Shangytbayeva
    Roza, Beysembekova
    PROCEEDINGS OF THE 2015 INFORMATION TECHNOLOGY AND MECHATRONICS ENGINEERING CONFERENCE, 2015, 7 : 29 - 32
  • [46] THE ELECTRICAL DOUBLE-LAYER ON OXIDES - SITE-BINDING IN THE POROUS DOUBLE-LAYER MODEL
    KLEIJN, JM
    COLLOIDS AND SURFACES, 1990, 51 : 371 - 388
  • [47] Visual Analysis and Detection of Network Flood Attacks through Two-Layer Density Approach
    Huang, Mao Lin
    Zhang, Jinson
    2013 3RD INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND NETWORK TECHNOLOGY (ICCSNT), 2013, : 625 - 629
  • [48] DLBN: Group Storage Mechanism Based on Double-Layer Blockchain Network
    Fan, Yanqing
    Qiu, Tie
    Zhang, Lidi
    Xu, Tianyi
    Liu, Wenyuan
    Zhou, Xiaobo
    Wan, Zhiguo
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (20) : 19649 - 19659
  • [49] DLAReID: double-layer attention network for object re-identification
    Wu, Rui
    Chen, Si-Bao
    Luo, Bin
    MULTIMEDIA TOOLS AND APPLICATIONS, 2023, 83 (16) : 48483 - 48497
  • [50] A Network Cognitive Algorithm Based Double-Layer Bayesian Network Reinforcement Learning Mechanism
    Li, Jie
    Chu, Ling-wei
    Dong, Chen
    Lu, Xiao-yuan
    2013 INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND ARTIFICIAL INTELLIGENCE (ICCSAI 2013), 2013, : 160 - 164