arrow
返回

A multi-task based deep learning approach for intrusion detection

delete2022-02-01
delete27
PRE
AI
Q
Qigang Liu
D
Deming Wang
Y
Yuhang Jia
S
Suyuan Luo
C
Chongren Wang *
DOI:10.1016/j.knosys.2021.107852delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
With the frequent occurrence of cyber-security incidents, intrusion detection system (IDS) has been payed more and more attention recently. However, detecting attacks from traffic data stream ac-curately is rather challenging. The great diversity and variation of network intrusions make the intrusion feature extraction difficult, and the serious imbalanced class distribution makes common classifiers cannot work properly. Traditional methods for intrusion detection suffer from some obvious drawbacks. Classic machine learning-based methods seriously depend on the pre-defined features, automatic feature learning-based methods usually overfit the training data and neglect the problem of imbalanced data distribution, and the unsupervised learning-based methods are not suitable for dealing with multi-class classification of attacks. In this paper, to understand the characteristics of network traffic clearly, we analyze the class distribution of classic intrusion datasets through visualization. Based on the observed characteristics we innovatively propose exploiting distinctive features of each type of traffic from three perspectives, namely, anomaly identification, clustering and classification. We consider the feature learning in each perspective as a single task, then propose three models to fulfill three tasks, namely, an Autoencoder-based contrastive learning model, a supervised learning-based clustering model, and MLP-based classifier, and we also develop a unified framework to integrate three models for accomplishing intrusion detection comprehensively. Additionally, we propose a customized loss function to deal with imbalanced distribution of traffic data. Finally, we conduct extensive experiments on three classic intrusion detection datasets. The results demonstrate that the proposed method can outperform the state-of-art methods on both binary and multi-class classification. (c) 2021 Elsevier B.V. All rights reserved.
Keyword:
Intrusion detection
Deep learning
Multi-task learning
Contrastive learning
Autoencoder

期刊

K
Knowledge-Based Systems
IF:
7.6
论文数:
1.3W
被引数:
4.5W

机构

S
shenzhen university
学者数:
4.6W
论文数: 3.4W
被引数: 72
S
shanghai university
学者数:
3.9W
论文数: 2.7W
被引数: 52
引用论文

引用论文

Adaptation of the respiratory controller contributes to the attenuation of exercise hyperpnea in endurance-trained athletes
err2011-05-03
err0
PREAI
errTadayoshi Miyamoto; Masashi Inagaki; Hiroshi Takaki; Toru Kawada; Toshiaki Shishido; Atsunori Kamiya; Masaru Sugimachi
err分享
err收藏
err分享
err收藏
err分享
err收藏
The manipulation of miRNA-gene regulatory networks by KSHV induces endothelial cell motility
err2011-09-08
err0
PREAI
errYu-Hsuan Wu; Tzu-Fang Hu; Yu-Chieh Chen; Ya-Ni Tsai; Yuan-Hau Tsai; Cheng-Chung Cheng; Hsei-Wei Wang
err分享
err收藏
Deep Abstraction and Weighted Feature Selection for Wi-Fi Impersonation Detection
err2018-03-01
err149
errOAAI
errAminanto, Muhamad Erza; Choi, Rakyong; Tanuwidjaja, Harry Chandra; Yoo, Paul D.; Kim, Kwangjo
err分享
err收藏
Network intrusion detection with a novel hierarchy of distances between embeddings of hash IP addresses
err2021-05-01
err16
errOAAI
errLopez-Martin, Manuel; Carro, Belen; Arribas, Juan Ignacio; Sanchez-Esguevillas, Antonio
err分享
err收藏
学者 查看更多内容