arrow
返回

Comparative research on network intrusion detection methods based on machine learning

delete2022-10-01
delete38
PRE
AI
C
Chunying Zhang
D
Donghao Jia
L
Liya Wang *
W
Wenjie Wang
F
Fengchun Liu
A
Aimin Yang
DOI:10.1016/j.cose.2022.102861delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Network intrusion detection system is an essential part of network security research. It detects intrusion behaviors through active defense technology and takes emergency measures such as alerting and terminating intrusions. With the rapid development of machine learning technology, more and more researchers apply machine learning algorithms to network intrusion detection to improve detection efficiency and accuracy. Due to the different principles of various algorithms, they also have their advantages and disadvantages. To construct the dominant algorithm model in the field of network intrusion detection and provide the accuracy value, this paper systematically combs the application literature of machine learning algorithms in intrusion detection in the past ten years. A review is made from three categories: traditional machine learning, ensemble learning, and deep learning. Then, this paper selects the KDD CUP99 and NSL-KDD datasets to conduct comparative experiments on decision trees, Naive Bayes, support vector machines, random forests, XGBoost, convolutional neural networks, and recurrent neural networks. The detection accuracy, F1, AUC, and other indicators of these algorithms on different data sets are compared. The experimental results show that the effect of the ensemble learning algorithm is generally better. The Naive Bayes algorithm has low accuracy in recognizing the learned data, but it has obvious advantages when facing new types of attacks, and the training speed is faster. The deep learning algorithm is not particularly prominent in this experiment, but its optimal results are affected by the structure, hyperparameters, and the number of training iterations, which need further in-depth study. Finally, the main challenges facing the current network intrusion detection field are summarized, and the future research directions have been prospected. (C) 2022 Elsevier Ltd. All rights reserved.
Keyword:
Network intrusion detection
Machine learning
Deep learning
Comparative experiment

期刊

C
Computers and Security
IF:
5.4
论文数:
4.6K
被引数:
1.4W

机构

N
north china university of science & technology
学者数:
6.6K
论文数: 3.7K
被引数: 5
引用论文

引用论文

err分享
err收藏
err
IF0
err
err0
PREAI
err
err分享
err收藏
err分享
err收藏
err分享
err收藏
State-of-the-art review of soft computing applications in underground excavations软计算在地下开挖中的应用现状综述
err2020-07-01
err367
errOAAI
errZhang, Wengang; Zhang, Runhong; Wu, Chongzhi; Goh, Anthony Teck Chee; Lacasse, Suzanne; Liu, Zhongqiang; Liu, Hanlong
err分享
err收藏
National Center for Biomedical Ontology: Advancing Biomedicine through Structured Organization of Scientific Knowledge
err2006-06-01
err0
errOAAI
errDaniel L. Rubin; Suzanna E. Lewis; Chris J. Mungall; Sima Misra; Monte Westerfield; Michael Ashburner; Ida Sim; Christopher G. Chute; Margaret-Anne Storey; Barry Smith; John Day-Richter; Natalya F. Noy; Mark A. Musen
err分享
err收藏
err
IF0
err
err0
PREAI
err
err分享
err收藏
err
IF0
err
err0
PREAI
err
err分享
err收藏
学者 查看更多内容