Affiliation:
1. School of Information Engineering, Jiangxi University of Science and Technology, Ganzhou 341000, China
Abstract
The combination of deep learning and intrusion detection has become a hot topic in today’s network security. In the face of massive, high-dimensional network traffic with uneven sample distribution, how to be able to accurately detect anomalous traffic is the primary task of intrusion detection. Most research on intrusion detection systems based on network anomalous traffic detection has focused on supervised learning; however, the process of obtaining labeled data often requires a lot of time and effort, as well as the support of network experts. Therefore, it is worthwhile investigating the development of label-free self-supervised learning-based approaches called BYOL which is a simple and elegant framework with sufficiently powerful feature extraction capabilities for intrusion detection systems. In this paper, we propose a new data augmentation strategy for intrusion detection data and an intrusion detection model based on label-free self-supervised learning, using a new data augmentation strategy to introduce a perturbation enhancement model to learn invariant feature representation capability and an improved BYOL self-supervised learning method to train the UNSW-NB15 intrusion detection dataset without labels to extract network traffic feature representations. Linear evaluation on UNSW-NB15 and transfer learning on NSK-KDD, KDD CUP99, CIC IDS2017, and CIDDS_001 achieve excellent performance in all metrics.
Funder
National Natural Science Foundation of China
Subject
Computer Networks and Communications,Information Systems
Reference56 articles.
1. AndersonJ. P.Computer security threat monitoring and surveillance1980Washington, DC, USAJames P. Anderson Company4PA 19034
2. DenningD. E.NeumannP. G.Requirements and model for IDES a real-time intrusion detection expert system1985Menlo Park, CA, USAComputer Science Laboratory, SRI InternationalTechnical report,13369043
3. An introduction to intrusion detection & assessment;B. Rebecca
4. Network intrusion detection system based on recursive feature addition and bigram technique
5. Host Based Intrusion Detection System with Combined CNN/RNN Model
Cited by
20 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献