Early Detection of Network Attacks Using Deep Learning

01/27/2022
by   Tanwir Ahmad, et al.
0

The Internet has become a prime subject to security attacks and intrusions by attackers. These attacks can lead to system malfunction, network breakdown, data corruption or theft. A network intrusion detection system (IDS) is a tool used for identifying unauthorized and malicious behavior by observing the network traffic. State-of-the-art intrusion detection systems are designed to detect an attack by inspecting the complete information about the attack. This means that an IDS would only be able to detect an attack after it has been executed on the system under attack and might have caused damage to the system. In this paper, we propose an end-to-end early intrusion detection system to prevent network attacks before they could cause any more damage to the system under attack while preventing unforeseen downtime and interruption. We employ a deep neural network-based classifier for attack identification. The network is trained in a supervised manner to extract relevant features from raw network traffic data instead of relying on a manual feature selection process used in most related approaches. Further, we introduce a new metric, called earliness, to evaluate how early our proposed approach detects attacks. We have empirically evaluated our approach on the CICIDS2017 dataset. The results show that our approach performed well and attained an overall 0.803 balanced accuracy.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
09/06/2018

IDSGAN: Generative Adversarial Networks for Attack Generation against Intrusion Detection

As an important tool in security, the intrusion detection system bears t...
research
05/22/2022

A review on Deep Neural Network for Computer Network Traffic Classification

Focus on Deep Neural Network based malicious and normal computer Network...
research
06/02/2020

Towards Identifying Human Actions, Intent, and Severity of APT Attacks Applying Deception Techniques – An Experiment

Attacks by Advanced Persistent Threats (APTs) have been shown to be diff...
research
10/13/2020

Session-layer Attack Traffic Classification by Program Synthesis

Writing classification rules to identify malicious network traffic is a ...
research
02/18/2023

Deep Neural Networks based Meta-Learning for Network Intrusion Detection

Designing an intrusion detection system is difficult as network traffic ...
research
01/14/2020

A Content-Based Deep Intrusion Detection System

By growing the number of Internet users and the prevalence of web applic...

Please sign up or login with your details

Forgot password? Click here to reset