arrow
返回

Intrusion Detection Using Payload Embeddings

delete2022-01-01
delete26
delete
OA
AI
M
Mehedi Hassan *
M
Md. Enamul Haque
M
Mehmet Engin Tozal
V
Vijay V. Raghavan
R
Rajeev Agrawal
DOI:10.1109/ACCESS.2021.3139835delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Attacks launched over the Internet often degrade or disrupt the quality of online services. Various Intrusion Detection Systems (IDSs), with or without prevention capabilities, have been proposed to defend networks or hosts against such attacks. While most of these IDSs extract features from the packet headers to detect any irregularities in the network traffic, some others use payloads alongside the headers. In this study, we propose a payload-based intrusion detection scheme, PayloadEmbeddings, using byte embeddings of the payloads of network packets. We employ a shallow neural network to generate vector representations for bytes and their corresponding payloads. Our feature extraction technique is coupled with the k-Nearest Neighbours (kNN) algorithm for the classification of packets as intrusive or non-intrusive. In our experiments, we evaluated 34 publicly available datasets, and used ten distinct payload-based, labeled intrusion detection datasets to train and evaluate our approach. Our empirical results show that PayloadEmbeddings reaches between 75% and 99% accuracy across all datasets. Finally, we compare our approach to other state-of-the-art and traditional intrusion detection techniques. Our findings suggest that PayloadEmbeddings demonstrates significant advantages over the other techniques on most of the datasets.
Keyword:
Intrusion detection
payload embeddings
byte embeddings

期刊

IEEE Access 封面图
IEEE Access
IF:
3.6
论文数:
9.8W
被引数:
29.4W

机构

S
Stanford University
学者数:
9.6W
论文数: 8.2W
被引数: 17.0W
U
university of louisiana lafayette
学者数:
1.8K
论文数: 1.6K
被引数: 0
United States Department of Defense 封面图
United States Department of Defense
学者数:
2.8W
论文数: 2.3W
被引数: 172
学者 查看更多机构