Ensemble of Random and Isolation Forests for Graph-Based Intrusion Detection in Containers

06/26/2023
by   Alfonso Iacovazzi, et al.
0

We propose a novel solution combining supervised and unsupervised machine learning models for intrusion detection at kernel level in cloud containers. In particular, the proposed solution is built over an ensemble of random and isolation forests trained on sequences of system calls that are collected at the hosting machine's kernel level. The sequence of system calls are translated into a weighted and directed graph to obtain a compact description of the container behavior, which is given as input to the ensemble model. We executed a set of experiments in a controlled environment in order to test our solution against the two most common threats that have been identified in cloud containers, and our results show that we can achieve high detection rates and low false positives in the tested attacks.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
10/18/2019

Tree-based Intelligent Intrusion Detection System in Internet of Vehicles

The use of autonomous vehicles (AVs) is a promising technology in Intell...
research
09/15/2020

Data-Driven Network Intrusion Detection: A Taxonomy of Challenges and Methods

Data-driven methods have been widely used in network intrusion detection...
research
04/15/2019

Comparison of System Call Representations for Intrusion Detection

Over the years, artificial neural networks have been applied successfull...
research
04/02/2019

An Efficient Network Intrusion Detection System Based on Feature Selection and Ensemble Classifier

Since Internet is so popular and prevailing in human life, countering cy...
research
10/06/2022

Effective Metaheuristic Based Classifiers for Multiclass Intrusion Detection

Network security has become the biggest concern in the area of cyber sec...
research
08/06/2018

Intrusion Prediction with System-call Sequence-to-Sequence Model

The advanced development of the Internet facilitates efficient informati...
research
06/27/2023

Event-Triggered Islanding in Inverter-Based Grids

The decentralization of modern power systems challenges the hierarchical...

Please sign up or login with your details

Forgot password? Click here to reset