遗忘
选择(遗传算法)
入侵检测系统
计算机科学
人工智能
入侵
机器学习
业务
心理学
认知心理学
地球化学
地质学
作者
Xinchen Zhang,Running Zhao,Zhihan Jiang,Handi Chen,Yulong Ding,Edith C.‐H. Ngai,Shuang‐Hua Yang
出处
期刊:Cornell University - arXiv
日期:2024-12-20
被引量:1
标识
DOI:10.48550/arxiv.2412.16264
摘要
Intrusion Detection Systems (IDS) are crucial for safeguarding digital infrastructure. In dynamic network environments, both threat landscapes and normal operational behaviors are constantly changing, resulting in concept drift. While continuous learning mitigates the adverse effects of concept drift, insufficient attention to drift patterns and excessive preservation of outdated knowledge can still hinder the IDS's adaptability. In this paper, we propose SSF (Strategic Selection and Forgetting), a novel continual learning method for IDS, providing continuous model updates with a constantly refreshed memory buffer. Our approach features a strategic sample selection algorithm to select representative new samples and a strategic forgetting mechanism to drop outdated samples. The proposed strategic sample selection algorithm prioritizes new samples that cause the `drifted' pattern, enabling the model to better understand the evolving landscape. Additionally, we introduce strategic forgetting upon detecting significant drift by discarding outdated samples to free up memory, allowing the incorporation of more recent data. SSF captures evolving patterns effectively and ensures the model is aligned with the change of data patterns, significantly enhancing the IDS's adaptability to concept drift. The state-of-the-art performance of SSF on NSL-KDD and UNSW-NB15 datasets demonstrates its superior adaptability to concept drift for network intrusion detection.
科研通智能强力驱动
Strongly Powered by AbleSci AI