An Autonomous Intrusion Detection System Using Ensemble of Advanced Learners

01/31/2020
by   Amir Andalib, et al.
0

An intrusion detection system (IDS) is a vital security component of modern computer networks. With networks finding their ways into providing sensitive services, IDSs need to be more intelligent and autonomous. Aside from autonomy, another important attribute for an IDS is its ability to detect zero-day attacks. To address these issues in this paper we propose an IDS which reduces the amount of manual interaction and needed expert knowledge and is able to yield acceptable performance under zero-day attacks. Our approach is to use three learning techniques in parallel, gated recurrent unit (GRU), convolutional neural network as deep techniques and Random Forest as an ensemble technique. These systems are trained in parallel and the results are combined under two logics, majority vote and "OR" logic. We use the NSL-KDD dataset to verify the proficiency of our proposed system. Simulation results show that the system has the potential to operate with a very low technician interaction under the zero-day attacks. We achieved 87.28 NSL-KDD's "KDDTest+" dataset and 76.61 "KDDTest-21" with lower training time and lower needed computational resources.

READ FULL TEXT
research
08/31/2022

Zero-day DDoS Attack Detection

The ability to detect zero-day (novel) attacks has become essential in t...
research
04/15/2020

Feature Selection and Intrusion Detection in Cloud Environment based on Machine Learning Algorithms

Characteristics and way of behavior of attacks and infiltrators on compu...
research
05/25/2010

Combining Naive Bayes and Decision Tree for Adaptive Intrusion Detection

In this paper, a new learning algorithm for adaptive network intrusion d...
research
07/09/2018

Recurrent Neural Networks for Enhancement of Signature-based Network Intrusion Detection Systems

Security of information passing through the Internet is threatened by to...
research
02/28/2022

Prepare for Trouble and Make it Double. Supervised and Unsupervised Stacking for AnomalyBased Intrusion Detection

In the last decades, researchers, practitioners and companies struggled ...
research
06/10/2023

Zero-Day Threats Detection for Critical Infrastructures

Technological advancements in various industries, such as network intell...
research
06/02/2020

Towards Identifying Human Actions, Intent, and Severity of APT Attacks Applying Deception Techniques – An Experiment

Attacks by Advanced Persistent Threats (APTs) have been shown to be diff...

Please sign up or login with your details

Forgot password? Click here to reset