返回
An Ameliorated Multiattack Network Anomaly Detection in Distributed Big Data System-Based Enhanced Stacking Multiple Binary Classifiers
DOI:10.1109/ACCESS.2022.3174482.png)
摘要
En 中文
The growth of the Internet of Things (IoT) generates new processing, networking infrastructure, data storage, and management capabilities. This massive volume of data may be used to provide high-value information for decision support and data-intensive science research, etc. However, owing to the nature of IoT in distribution, virtualisation, cloud integration, and internet connectivity, the IoT environment is prone to various cyber-attacks and security issues. Hence, the increasing frequency and potency of recent attacks and constantly evolving attack vectors necessitate the development of improved detection methods. Therefore, this study proposes a distributed computing-based security model to safeguard big data systems. The proposed ensemble multi binary attack model (EMBAM) is an intrusion detection system (IDS) that offers a unique anomaly based IDS to detect normal behaviour and abnormal attack(s), for example, threats in a network. EMBAM ensembles multiple binary classifiers into a single model through stacking. The core binary model is a decision tree classifier with hyperparameters optimised using the grid search method. The use of multiple binary classifiers allows each binary classifier to adopt the limitations of the others. Empirical analysis of the experimental profile of the EMBAM has been discussed with eight-plus state-of-the-art methods using performance metrics, such as accuracy, detection rate, precision, specificity, false alarm rate, and F1-score. EMBAM can recognise multiple attack types as a star plug and play advantageous in a highly dynamic scheme. The proposed approach outperforms existing approaches on the UNSW-NB15 dataset and yields competitive results on the CICIDS2017 dataset.
Keyword:
Big Data
Intrusion detection
Feature extraction
Classification algorithms
Telecommunication traffic
Distributed databases
Computer architecture
Anomaly-based IDS
ensemble learning
intrusion detection system
machine learning
期刊
IF:
3.6
论文数:
9.8W
被引数:
29.4W
机构
引用论文
CICIDS-2017 Dataset Feature Analysis With Information Gain for Anomaly Detection基于信息增益的CICIDS-2017数据集特征分析及其异常检测
IEEE ACCESS
IF3.6
A Hybrid Deep Random Neural Network for Cyberattack Detection in the Industrial Internet of Things用于工业物联网网络攻击检测的混合深度随机神经网络
IEEE ACCESS
IF3.6
An Entrepreneurship Education Co-Curricular Program to Stimulate Entrepreneurial Mindset in Engineering Students
MRS Advances
IF0
Hyperband Tuned Deep Neural Network With Well Posed Stacked Sparse AutoEncoder for Detection of DDoS Attacks in Cloud具有姿态良好的堆叠稀疏自动编码器的超带调优深度神经网络,用于检测云中的DDoS攻击
IEEE ACCESS
IF3.6

