Hardening Random Forest Cyber Detectors Against Adversarial Attacks

12/09/2019
by   Giovanni Apruzzese, et al.
0

Machine learning algorithms are effective in several applications, but they are not as much successful when applied to intrusion detection in cyber security. Due to the high sensitivity to their training data, cyber detectors based on machine learning are vulnerable to targeted adversarial attacks that involve the perturbation of initial samples. Existing defenses assume unrealistic scenarios; their results are underwhelming in non-adversarial settings; or they can be applied only to machine learning algorithms that perform poorly for cyber security. We present an original methodology for countering adversarial perturbations targeting intrusion detection systems based on random forests. As a practical application, we integrate the proposed defense method in a cyber detector analyzing network traffic. The experimental results on millions of labelled network flows show that the new detector has a twofold value: it outperforms state-of-the-art detectors that are subject to adversarial attacks; it exhibits robust results both in adversarial and non-adversarial scenarios.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
06/17/2021

Modeling Realistic Adversarial Attacks against Network Intrusion Detection Systems

The incremental diffusion of machine learning algorithms in supporting c...
research
04/20/2021

Adversarial Training for Deep Learning-based Intrusion Detection Systems

Nowadays, Deep Neural Networks (DNNs) report state-of-the-art results in...
research
10/27/2022

TAD: Transfer Learning-based Multi-Adversarial Detection of Evasion Attacks against Network Intrusion Detection Systems

Nowadays, intrusion detection systems based on deep learning deliver sta...
research
03/08/2022

Adaptative Perturbation Patterns: Realistic Adversarial Learning for Robust Intrusion Detection

Adversarial attacks pose a major threat to machine learning and to the s...
research
09/14/2023

AIDPS:Adaptive Intrusion Detection and Prevention System for Underwater Acoustic Sensor Networks

Underwater Acoustic Sensor Networks (UW-ASNs) are predominantly used for...
research
07/29/2020

Adversarial Robustness for Machine Learning Cyber Defenses Using Log Data

There has been considerable and growing interest in applying machine lea...
research
11/08/2019

AutoIDS: Auto-encoder Based Method for Intrusion Detection System

Intrusion Detection System (IDS) is one of the most effective solutions ...

Please sign up or login with your details

Forgot password? Click here to reset