An Enhanced Anomaly Detection in Web Traffic Using a Stack of Classifier Ensemble

被引:59
|
作者
Tama, Bayu Adhi [1 ]
Nkenyereye, Lewis [2 ]
Islam, S. M. Riazul [3 ]
Kwak, Kyung-Sup [4 ]
机构
[1] Pohang Univ Sci & Technol POSTECH, Dept Mech Engn, Gyeongbuk 37673, South Korea
[2] Sejong Univ, Dept Comp & Informat Secur, Seoul 05006, South Korea
[3] Sejong Univ, Dept Comp Sci & Engn, Seoul 05006, South Korea
[4] Inha Univ, Dept Informat & Commun Engn, Incheon 22212, South Korea
基金
新加坡国家研究基金会;
关键词
Random forest; gradient boosting machine; Web attack; performance benchmark; anomaly-based IDSs; significance tests; INTRUSION-DETECTION; MODEL; IDS;
D O I
10.1109/ACCESS.2020.2969428
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A Web attack protection system is extremely essential in today & x2019;s information age. Classifier ensembles have been considered for anomaly-based intrusion detection in Web traffic. However, they suffer from an unsatisfactory performance due to a poor ensemble design. This paper proposes a stacked ensemble for anomaly-based intrusion detection systems in a Web application. Unlike a conventional stacking, where some single weak learners are prevalently used, the proposed stacked ensemble is an ensemble architecture, yet its base learners are other ensembles learners, i.e. random forest, gradient boosting machine, and XGBoost. To prove the generalizability of the proposed model, two datasets that are specifically used for attack detection in a Web application, i.e. CSIC-2010v2 and CICIDS-2017 are used in the experiment. Furthermore, the proposed model significantly surpasses existing Web attack detection techniques concerning the accuracy and false positive rate metrics. Validation result on the CICIDS-2017, NSL-KDD, and UNSW-NB15 dataset also ameliorate the ones obtained by some recent techniques. Finally, the performance of all classification algorithms in terms of a two-step statistical significance test is further discussed, providing a value-added contribution to the current literature.
引用
收藏
页码:24120 / 24134
页数:15
相关论文
共 50 条
  • [31] Anomaly Detection using Smart Tracing Tricks on Call Stack
    Jidiga, Goverdhan Reddy
    Sammulal, P.
    2014 INTERNATIONAL CONFERENCE FOR CONVERGENCE OF TECHNOLOGY (I2CT), 2014,
  • [32] Ensemble Classifier for Traffic in Presence of Changing Distributions
    Wang, Runxin
    Shi, Lei
    Jennings, Brendan
    2013 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (ISCC), 2013,
  • [33] Anomaly Detection Using Ensemble Classification and Evidence Theory
    Arevalo, Fernando
    Ibrahim, M. Tahasanul
    Alison, M. P. Christian
    Schwung, Andreas
    IEEE ACCESS, 2023, 11 : 53545 - 53587
  • [34] Cardiovascular disease detection using a novel stack-based ensemble classifier with aggregation layer, DOWA operator, and feature transformation
    Hosseini Chagahi M.
    Mohammadi Dashtaki S.
    Moshiri B.
    Jalil Piran M.D.
    Computers in Biology and Medicine, 2024, 173
  • [35] A Novel Classifier for Engineering Web Traffic
    Vithanage, Wathsala W.
    Atukorale, Ajantha S.
    2011 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (ISCC), 2011,
  • [36] Detection of traffic signs using posterior classifier combination
    Paletta, L
    16TH INTERNATIONAL CONFERENCE ON PATTERN RECOGNITION, VOL II, PROCEEDINGS, 2002, : 705 - 708
  • [37] Network Intrusion Detection Using Stack-Ensemble ANN
    Khan, Lamia Parven
    Anika, Tasfia Tahsin
    Hanif, Suraka Iban
    Rahman, Rashedur M.
    2022 IEEE 46TH ANNUAL COMPUTERS, SOFTWARE, AND APPLICATIONS CONFERENCE (COMPSAC 2022), 2022, : 1104 - 1109
  • [38] Traffic Accident Detection Using Random Forest Classifier
    Dogru, Nejdet
    Subasi, Abdulhamit
    2018 15TH LEARNING AND TECHNOLOGY CONFERENCE (L&T), 2018, : 40 - 45
  • [39] Network traffic anomaly detection method based on multi-scale residual classifier
    Duan, Xueyuan
    Fu, Yu
    Wang, Kun
    COMPUTER COMMUNICATIONS, 2023, 198 : 206 - 216
  • [40] Blockchain network layer anomaly traffic detection method based on multiple classifier integration
    Dai Q.
    Zhang B.
    Guo S.
    Xu K.
    Tongxin Xuebao/Journal on Communications, 2023, 44 (03): : 66 - 80