A Method of Few-Shot Network Intrusion Detection Based on Meta-Learning Framework

计算机科学 入侵检测系统 人工智能 数据挖掘 特征(语言学) 特征提取 任务(项目管理) 元学习(计算机科学) 机器学习 构造(python库) 网络安全 人工神经网络 模式识别(心理学) 计算机安全 管理 经济 哲学 语言学 程序设计语言
作者
Congyuan Xu,Jizhong Shen,Xin Du
出处
期刊:IEEE Transactions on Information Forensics and Security [Institute of Electrical and Electronics Engineers]
卷期号:15: 3540-3552 被引量:111
标识
DOI:10.1109/tifs.2020.2991876
摘要

Conventional intrusion detection systems based on supervised learning techniques require a large number of samples for training, while in some scenarios, such as zero-day attacks, security agencies can only intercept a limited number of shots of malicious samples. Therefore, there is a need for few-shot detection. In this paper, a detection method based on a meta-learning framework is proposed for this purpose. The proposed method can be used to distinguish and compare a pair of network traffic samples as a basic task of learning, including a normal unaffected sample and a malicious one. To accomplish this task, we design a deep neural network (DNN) named FC-Net, which mainly comprises two parts: feature extraction network and comparison network. FC-Net learns a pair of feature maps for classification from a pair of network traffic samples, then compares the obtained feature maps, and finally determines whether the pair of samples belongs to the same type. To evaluate the proposed detection method, we construct two datasets for few-shot network intrusion detection based on real network traffic data sources, using a specifically developed approach. The experimental results indicate that the proposed detection method is universal and is not limited to specific datasets or attack types. Training and testing on the same datasets demonstrate that the proposed method can achieve the average detection rate up to 98.88%. The outcome of training on one dataset and testing on the other one confirms that the proposed method can achieve better performance. In a few-shot scenario, malicious samples in an untrained dataset can be detected successfully, and the average detection rate is up to 99.62%.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
更新
大幅提高文件上传限制,最高150M (2024-4-1)

科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
欣慰宛海完成签到,获得积分10
1秒前
顾矜应助lynnleecc采纳,获得10
1秒前
我是老大应助我要吃挂面采纳,获得10
2秒前
seven完成签到,获得积分10
2秒前
3秒前
11完成签到,获得积分10
3秒前
4秒前
5秒前
酸化土壤改良应助sqrt138采纳,获得50
6秒前
lw关注了科研通微信公众号
7秒前
香蕉觅云应助科研通管家采纳,获得10
8秒前
8秒前
罗布林卡应助科研通管家采纳,获得20
8秒前
8秒前
共享精神应助科研通管家采纳,获得10
8秒前
共享精神应助科研通管家采纳,获得10
8秒前
Akim应助科研通管家采纳,获得10
8秒前
8秒前
小马甲应助disciple采纳,获得10
8秒前
8秒前
9秒前
9秒前
9秒前
华仔应助Neonoes采纳,获得30
10秒前
orixero应助木子李采纳,获得10
11秒前
11秒前
12秒前
包容依琴完成签到,获得积分10
12秒前
su发布了新的文献求助10
12秒前
华仔应助neochen15采纳,获得10
13秒前
清爽的水蓝完成签到,获得积分10
13秒前
我要吃挂面完成签到,获得积分10
14秒前
15秒前
酒石酸发布了新的文献求助10
15秒前
我是老大应助Cindy采纳,获得10
16秒前
爆米花应助Katie采纳,获得10
16秒前
顾矜应助包容依琴采纳,获得10
16秒前
17秒前
落伍少年发布了新的文献求助10
19秒前
畅快的安莲关注了科研通微信公众号
19秒前
高分求助中
The three stars each : the Astrolabes and related texts 1070
Manual of Clinical Microbiology, 4 Volume Set (ASM Books) 13th Edition 1000
Sport in der Antike 800
Aspect and Predication: The Semantics of Argument Structure 666
De arte gymnastica. The art of gymnastics 600
少脉山油柑叶的化学成分研究 530
Stephen R. Mackinnon - Chen Hansheng: China’s Last Romantic Revolutionary (2023) 500
热门求助领域 (近24小时)
化学 材料科学 医学 生物 有机化学 工程类 生物化学 纳米技术 物理 内科学 计算机科学 化学工程 复合材料 遗传学 基因 物理化学 催化作用 电极 光电子学 量子力学
热门帖子
关注 科研通微信公众号,转发送积分 2409468
求助须知:如何正确求助?哪些是违规求助? 2105344
关于积分的说明 5317354
捐赠科研通 1832826
什么是DOI,文献DOI怎么找? 913266
版权声明 560765
科研通“疑难数据库(出版商)”最低求助积分说明 488323