SoK: The Impact of Unlabelled Data in Cyberthreat Detection

05/18/2022
by   Giovanni Apruzzese, et al.
0

Machine learning (ML) has become an important paradigm for cyberthreat detection (CTD) in the recent years. A substantial research effort has been invested in the development of specialized algorithms for CTD tasks. From the operational perspective, however, the progress of ML-based CTD is hindered by the difficulty in obtaining the large sets of labelled data to train ML detectors. A potential solution to this problem are semisupervised learning (SsL) methods, which combine small labelled datasets with large amounts of unlabelled data. This paper is aimed at systematization of existing work on SsL for CTD and, in particular, on understanding the utility of unlabelled data in such systems. To this end, we analyze the cost of labelling in various CTD tasks and develop a formal cost model for SsL in this context. Building on this foundation, we formalize a set of requirements for evaluation of SsL methods, which elucidates the contribution of unlabelled data. We review the state-of-the-art and observe that no previous work meets such requirements. To address this problem, we propose a framework for assessing the benefits of unlabelled data in SsL. We showcase an application of this framework by performing the first benchmark evaluation that highlights the tradeoffs of 9 existing SsL methods on 9 public datasets. Our findings verify that, in some cases, unlabelled data provides a small, but statistically significant, performance gain. This paper highlights that SsL in CTD has a lot of room for improvement, which should stimulate future research in this field.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
03/09/2022

The Cross-evaluation of Machine Learning-based Network Intrusion Detection Systems

Enhancing Network Intrusion Detection Systems (NIDS) with supervised Mac...
research
02/28/2022

Realtime strategy for image data labelling using binary models and active sampling

Machine learning (ML) and Deep Learning (DL) tasks primarily depend on d...
research
09/20/2021

SoK: Machine Learning Governance

The application of machine learning (ML) in computer systems introduces ...
research
01/11/2021

Machine Learning Towards Intelligent Systems: Applications, Challenges, and Opportunities

The emergence and continued reliance on the Internet and related technol...
research
07/27/2022

Towards Clear Expectations for Uncertainty Estimation

If Uncertainty Quantification (UQ) is crucial to achieve trustworthy Mac...
research
03/21/2022

Non-Functional Requirements for Machine Learning: An Exploration of System Scope and Interest

Systems that rely on Machine Learning (ML systems) have differing demand...
research
11/15/2022

The Lean Data Scientist: Recent Advances towards Overcoming the Data Bottleneck

Machine learning (ML) is revolutionizing the world, affecting almost eve...

Please sign up or login with your details

Forgot password? Click here to reset