Combining Oversampling with Recurrent Neural Networks for Intrusion Detection

被引:3
|
作者
Wang, Jenq-Haur [1 ]
Septian, Tri Wanda [2 ]
机构
[1] Natl Taipei Univ Technol, Taipei, Taiwan
[2] Sriwijaya Univ, Palembang, Indonesia
关键词
Class imbalance; Oversampling; Feature selection; Long short-term memory; Gated recurrent unit;
D O I
10.1007/978-3-030-73216-5_21
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Previous studies on intrusion detection focus on analyzing features from existing datasets. With various types of fast-changing attacks, we need to adapt to new features for effective protection. Since the real network traffic is very imbalanced, it's essential to train appropriate classifiers that can deal with rare cases. In this paper, we propose to combine oversampling techniques with deep learning methods for intrusion detection in imbalanced network traffic. First, after preprocessing with data cleaning and normalization, we use feature importance weights generated from ensemble decision trees to select important features. Then, the Synthetic Minority Oversampling Technique (SMOTE) is used for creating synthetic samples from minority class. Finally, we use Recurrent Neural Networks (RNNs) including Long Short-Term Memory (LSTM) and Gated Recurrent Unit (GRU) for classification. In our experimental results, oversampling improves the performance of intrusion detection for both machine learning and deep learning methods. The best performance can be obtained for CIC-IDS2017 dataset using LSTM classifier with an F1 -score of 98.9%, and for CSE-CIC-IDS2018 dataset using GRU with an F1-score of 98.8%. This shows the potential of our proposed approach in detecting new types of intrusion from imbalanced real network traffic.
引用
收藏
页码:305 / 320
页数:16
相关论文
共 50 条
  • [1] Modeling an intrusion detection using recurrent neural networks
    Ibrahim, Mariam
    Elhafiz, Ruba
    [J]. JOURNAL OF ENGINEERING RESEARCH, 2023, 11 (01):
  • [2] Combining Convolutional and Recurrent Neural Networks for Human Skin Detection
    Zuo, Haiqiang
    Fan, Heng
    Blasch, Erik
    Ling, Haibin
    [J]. IEEE SIGNAL PROCESSING LETTERS, 2017, 24 (03) : 289 - 293
  • [3] A Deep Learning Approach for Intrusion Detection Using Recurrent Neural Networks
    Yin, Chuanlong
    Zhu, Yuefei
    Fei, Jinlong
    He, Xinzheng
    [J]. IEEE ACCESS, 2017, 5 : 21954 - 21961
  • [4] Intrusion detection with neural networks
    Ryan, J
    Lin, MJ
    Miikkulainen, R
    [J]. ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 10, 1998, 10 : 943 - 949
  • [5] Chinese Event Detection Combining BERT Model with Recurrent Neural Networks
    Zhang Wei
    Wang Yongli
    [J]. 2020 5TH INTERNATIONAL CONFERENCE ON MECHANICAL, CONTROL AND COMPUTER ENGINEERING (ICMCCE 2020), 2020, : 1625 - 1629
  • [6] Deep Recurrent Neural Network for Intrusion Detection in SDN-based Networks
    Tang, Tuan A.
    Mhamdi, Lotfi
    McLernon, Des
    Zaidi, Syed Ali Raza
    Ghogho, Mounir
    [J]. 2018 4TH IEEE CONFERENCE ON NETWORK SOFTWARIZATION AND WORKSHOPS (NETSOFT), 2018, : 202 - 206
  • [7] Hybrid intrusion detection and signature generation using Deep Recurrent Neural Networks
    Kaur, Sanmeet
    Singh, Maninder
    [J]. NEURAL COMPUTING & APPLICATIONS, 2020, 32 (12): : 7859 - 7877
  • [8] Hybrid intrusion detection and signature generation using Deep Recurrent Neural Networks
    Sanmeet Kaur
    Maninder Singh
    [J]. Neural Computing and Applications, 2020, 32 : 7859 - 7877
  • [9] Traffic Modeling by Recurrent Neural Networks for Intrusion Detection in Industrial Control Systems
    Sokolov, Alexander N.
    Alabugin, Sergei K.
    Pyatnitsky, Ilya A.
    [J]. 2019 INTERNATIONAL CONFERENCE ON INDUSTRIAL ENGINEERING, APPLICATIONS AND MANUFACTURING (ICIEAM), 2019,
  • [10] Neural Networks for Intrusion Detection Systems
    Beqiri, Elidon
    [J]. GLOBAL SECURITY, SAFETY, AND SUSTAINABILITY, PROCEEDINGS, 2009, 45 : 156 - 165