Oliveira, N.; Praça, I.; Maia, E.; Sousa, O. Intelligent Cyber-Attack Detection and Classification for Network-based Intrusion Detection Systems. Preprints2020, 2020120315. https://doi.org/10.20944/preprints202012.0315.v1
APA Style
Oliveira, N., Praça, I., Maia, E., & Sousa, O. (2020). Intelligent Cyber-Attack Detection and Classification for Network-based Intrusion Detection Systems. Preprints. https://doi.org/10.20944/preprints202012.0315.v1
Chicago/Turabian Style
Oliveira, N., Eva Maia and Orlando Sousa. 2020 "Intelligent Cyber-Attack Detection and Classification for Network-based Intrusion Detection Systems" Preprints. https://doi.org/10.20944/preprints202012.0315.v1
Abstract
With the latest advances in information and communication technologies, greater amounts of sensitive user and corporate information are constantly shared across the network making it susceptible to an attack that can compromise data confidentiality, integrity and availability. Intrusion Detection Systems (IDS) are important security mechanisms that can perform a timely detection of malicious events through the inspection of network traffic or host-based logs. Throughout the years, many machine learning techniques have proven to be successful at conducting anomaly detection but only a few considered the sequential nature of data. This work proposes a sequential approach and evaluates the performance of a Random Forest (RF), a Multi-Layer Perceptron (MLP) and a Long-Short Term Memory (LSTM) on the CIDDS-001 dataset. The resulting performance measures of this particular approach are compared with the ones obtained from a more traditional one, that only considers individual flow information, in order to determine which methodology best suits the concerned scenario. The experimental outcomes lead to believe that anomaly detection can be better addressed from a sequential perspective and that the LSTM is a very reliable model for acquiring sequential patterns in network traffic data, achieving an accuracy of 99.94% and a f1-score of 91.66%.
Keywords
Intrusion Detection Systems; Anomaly detection; Sequential analysis; Random Forest; Multi-Layer Perceptron; Long-Short Term Memory
Subject
Computer Science and Mathematics, Computer Science
Copyright:
This is an open access article distributed under the Creative Commons Attribution License which permits unrestricted use, distribution, and reproduction in any medium, provided the original work is properly cited.