SoK: Realistic Adversarial Attacks and Defenses for Intelligent Network Intrusion Detection

08/13/2023
by   João Vitorino, et al.
0

Machine Learning (ML) can be incredibly valuable to automate anomaly detection and cyber-attack classification, improving the way that Network Intrusion Detection (NID) is performed. However, despite the benefits of ML models, they are highly susceptible to adversarial cyber-attack examples specifically crafted to exploit them. A wide range of adversarial attacks have been created and researchers have worked on various defense strategies to safeguard ML models, but most were not intended for the specific constraints of a communication network and its communication protocols, so they may lead to unrealistic examples in the NID domain. This Systematization of Knowledge (SoK) consolidates and summarizes the state-of-the-art adversarial learning approaches that can generate realistic examples and could be used in real ML development and deployment scenarios with real network traffic flows. This SoK also describes the open challenges regarding the use of adversarial ML in the NID domain, defines the fundamental properties that are required for an adversarial example to be realistic, and provides guidelines for researchers to ensure that their future experiments are adequate for a real communication network.

READ FULL TEXT

page 8

page 9

research
03/12/2023

Adv-Bot: Realistic Adversarial Botnet Attacks against Network Intrusion Detection Systems

Due to the numerous advantages of machine learning (ML) algorithms, many...
research
03/13/2022

Generating Practical Adversarial Network Traffic Flows Using NIDSGAN

Network intrusion detection systems (NIDS) are an essential defense for ...
research
03/08/2022

Adaptative Perturbation Patterns: Realistic Adversarial Learning for Robust Intrusion Detection

Adversarial attacks pose a major threat to machine learning and to the s...
research
11/08/2022

A Hypergraph-Based Machine Learning Ensemble Network Intrusion Detection System

Network intrusion detection systems (NIDS) to detect malicious attacks c...
research
03/13/2023

Review on the Feasibility of Adversarial Evasion Attacks and Defenses for Network Intrusion Detection Systems

Nowadays, numerous applications incorporate machine learning (ML) algori...
research
06/17/2021

Modeling Realistic Adversarial Attacks against Network Intrusion Detection Systems

The incremental diffusion of machine learning algorithms in supporting c...
research
04/12/2022

Liuer Mihou: A Practical Framework for Generating and Evaluating Grey-box Adversarial Attacks against NIDS

Due to its high expressiveness and speed, Deep Learning (DL) has become ...

Please sign up or login with your details

Forgot password? Click here to reset