A new method for flow-based network intrusion detection using inverse statistical physics

10/16/2019
by   Camila Pontes, et al.
0

Network Intrusion Detection Systems (NIDS) play an important role as tools for identifying potential network threats. In the context of ever-increasing traffic volume on computer networks, flow-based NIDS arise as good solutions for real-time traffic classification. In recent years, different flow-based classifiers have been proposed based on both shallow and deep learning. Nevertheless, these classical machine learning algorithms have some limitations. For instance, they require large amounts of labeled data, which might be difficult to obtain. Additionally, most machine learning models are not general enough to be applied in different contexts. To overcome these limitations, we propose a new flow-based classifier, called Energy-based Flow Classifier (EFC). This anomaly-based classifier uses inverse statistics to infer a model based on labeled benign examples. We show that EFC is capable to accurately perform a two-class flow classification and is resilient to context change. Given the positive results obtained, we consider EFC o be a promising algorithm to perform flow-based traffic classification.

READ FULL TEXT

page 1

page 4

page 11

research
12/08/2022

A Dependable Hybrid Machine Learning Model for Network Intrusion Detection

Network intrusion detection systems (NIDSs) play an important role in co...
research
09/23/2021

An Anomaly-based Multi-class Classifier for Network Intrusion Detection

Network intrusion detection systems (NIDS) are one of several solutions ...
research
10/03/2018

Generating Labeled Flow Data from MAWILab Traces for Network Intrusion Detection

A growing issue in the modern cyberspace world is the direct identificat...
research
05/15/2022

Attack vs Benign Network Intrusion Traffic Classification

Intrusion detection systems (IDS) are used to monitor networks or system...
research
11/24/2018

OCLEP+: One-class Anomaly and Intrusion Detection Using Minimal Length of Emerging Patterns

This paper presents a method called One-class Classification using Lengt...
research
06/08/2023

Flow-based Network Intrusion Detection Based on BERT Masked Language Model

A Network Intrusion Detection System (NIDS) is an important tool that id...

Please sign up or login with your details

Forgot password? Click here to reset