Author:
Zhao Yifan,Hu Zhanhui,Liu Rongjun
Abstract
AbstractWith the development of science and technology, more and more personal information is uploaded to the Internet, which poses a serious threat to our personal and property security. As machine learning and deep learning techniques continue to develop, they become increasingly powerful at extracting data and improving the accuracy of classifying malicious traffic. This paper proposes an intrusion detection model based on Transformer, BiGRU, and DNN, referred to as the TBGD model. The Multi-Head Attention mechanism and Feedforward Neural Network in Transformer help capture global relationships and information; BiGRU models sequential information in sequences; DNN learns complex nonlinear relationships and generates accurate intrusion detection predictions. To solve the problem of data set imbalance, we adopted the RUSK sampling mechanism, in which we used Random-Under-Sampler for majority class samples and K-SMOTE oversampling for minority class samples to balance the data set. In addition, the experiment uses the CICIDS2017 dataset. The experiment shows that after the RUSK sampling mechanism balances the data set, the TBGD model has a higher overall classification accuracy and a higher recognition rate for minority classes than the machine learning and deep learning algorithms compared to the experiment.
Subject
Computer Science Applications,History,Education
Reference12 articles.
1. Secure Data Transmission and Trustworthiness Judgement Approaches Against Cyber-Physical Attacks in an Integrated Data-Driven Framework.;Jiang;IEEE transactions on systems, man, and cybernetics. Systems,2022
2. SVM Based Network Intrusion Detection for the UNSW-NB15 Dataset. in 2019 IEEE 13th International Conference on ASIC (ASICON).;D.,2019
3. An Intrusion Detection System (IDS) using Dimensional Reduction Based on Statistical and SDAE to Enhance SVM in Classification Task. in 2022 5th International Conference on Information and Communications Technology (ICOIACT).;Hanafi.,2022
4. Intrusion detection system combined enhanced random forest with SMOTE algorithm.;Wu;EURASIP Journal on Advances in Signal Processing, 2022,2022
5. Intrusion detection approach based on optimized artificial neural network.;Choraś;Neurocomputing,2021