A Method of Few-Shot Network Intrusion Detection Based on Meta-Learning Framework

计算机科学 入侵检测系统 人工智能 数据挖掘 特征(语言学) 特征提取 任务(项目管理) 元学习(计算机科学) 机器学习 构造(python库) 网络安全 人工神经网络 模式识别(心理学) 假阳性率 样品(材料) 计算机安全 计算机网络 管理 经济 哲学 语言学 化学 色谱法
作者
Congyuan Xu,Jizhong Shen,Xin Du
出处
期刊:IEEE Transactions on Information Forensics and Security [Institute of Electrical and Electronics Engineers]
卷期号:15: 3540-3552 被引量:235
标识
DOI:10.1109/tifs.2020.2991876
摘要

Conventional intrusion detection systems based on supervised learning techniques require a large number of samples for training, while in some scenarios, such as zero-day attacks, security agencies can only intercept a limited number of shots of malicious samples. Therefore, there is a need for few-shot detection. In this paper, a detection method based on a meta-learning framework is proposed for this purpose. The proposed method can be used to distinguish and compare a pair of network traffic samples as a basic task of learning, including a normal unaffected sample and a malicious one. To accomplish this task, we design a deep neural network (DNN) named FC-Net, which mainly comprises two parts: feature extraction network and comparison network. FC-Net learns a pair of feature maps for classification from a pair of network traffic samples, then compares the obtained feature maps, and finally determines whether the pair of samples belongs to the same type. To evaluate the proposed detection method, we construct two datasets for few-shot network intrusion detection based on real network traffic data sources, using a specifically developed approach. The experimental results indicate that the proposed detection method is universal and is not limited to specific datasets or attack types. Training and testing on the same datasets demonstrate that the proposed method can achieve the average detection rate up to 98.88%. The outcome of training on one dataset and testing on the other one confirms that the proposed method can achieve better performance. In a few-shot scenario, malicious samples in an untrained dataset can be detected successfully, and the average detection rate is up to 99.62%.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
LOTUS完成签到,获得积分10
刚刚
ZDM完成签到,获得积分10
刚刚
现代海发布了新的文献求助10
1秒前
珍珠爸爸完成签到,获得积分10
1秒前
Jiuqing完成签到,获得积分10
1秒前
eilizheng发布了新的文献求助10
1秒前
香蕉觅云应助Ethereal采纳,获得10
1秒前
明亮尔蓝发布了新的文献求助10
2秒前
3秒前
Lsj发布了新的文献求助10
4秒前
FashionBoy应助健忘访风采纳,获得10
4秒前
AABB完成签到,获得积分10
4秒前
everything完成签到,获得积分10
6秒前
wangq完成签到,获得积分10
6秒前
顽石发布了新的文献求助10
6秒前
科研通AI6.4应助略略略采纳,获得10
6秒前
6秒前
7秒前
Yang发布了新的文献求助10
8秒前
辛勤的纸飞机完成签到 ,获得积分10
9秒前
星辰大海应助美好海瑶采纳,获得10
9秒前
10秒前
10秒前
10秒前
852应助jiaxiang采纳,获得10
10秒前
伊梦阑珊给XIAOJU111的求助进行了留言
11秒前
霸天狂龙发布了新的文献求助10
12秒前
Zhou应助Vintoe采纳,获得10
12秒前
酷波er应助LOTUS采纳,获得10
13秒前
里旺发布了新的文献求助10
13秒前
完美世界应助鲸落采纳,获得10
13秒前
121212完成签到,获得积分10
13秒前
伊梦阑珊应助吨吨吨吨吨采纳,获得10
14秒前
小蘑菇应助Jessie爱吃鱼采纳,获得10
15秒前
lixue1993发布了新的文献求助10
15秒前
16秒前
领导范儿应助科研通管家采纳,获得10
16秒前
16秒前
lijin发布了新的文献求助10
16秒前
16秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Autoparametric Resonance in Mechanical Systems 1000
Effects of Two Weeks of Red Light Therapy on Choroidal Thickness and Axial Length in Young Adults 700
Cosmos as Art Object: Studies in Plato's Timaeus and Other Dialogues 600
Management and the Arts 510
Matrix Methods in Data Mining and Pattern Recognition Second Edition 510
Auslegungsgeschichte 500
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 内科学 物理 复合材料 催化作用 细胞生物学 无机化学 光电子学 物理化学 电极 基因
热门帖子
关注 科研通微信公众号,转发送积分 7664123
求助须知:如何正确求助?哪些是违规求助? 9233663
关于积分的说明 19865702
捐赠科研通 7232852
什么是DOI,文献DOI怎么找? 3282710
关于科研通互助平台的介绍 2442018
邀请新用户注册赠送积分活动 2283876