Affiliation:
1. College of Information Engineering, Chinese People’s Armed Police Force Engineering University, Xi’an 710086, China
Abstract
Due to the severe imbalance in the quantities of normal samples and attack samples, as well as among different types of attack samples, intrusion detection systems suffer from low detection rates for rare-class attack data. In this paper, we propose a geometric synthetic minority oversampling technique based on the optimized kernel density estimation algorithm. This method can generate diverse rare-class attack data by learning the distribution of rare-class attack data while maintaining similarity with the original sample features. Meanwhile, the balanced data is input to a feature extraction module built upon multiple denoising autoencoders, reducing information redundancy in high-dimensional data and improving the detection performance for unknown attacks. Subsequently, a soft-voting ensemble learning technique is utilized for multi-class anomaly detection on the balanced and dimensionally reduced data. Finally, an intrusion detection system is constructed based on data preprocessing, imbalance handling, feature extraction, and anomaly detection modules. The performance of the system was evaluated using two datasets, NSL-KDD and N-BaIoT, achieving 86.39% and 99.94% multiclassification accuracy, respectively. Through ablation experiments and comparison with the baseline model, it is found that the inherent limitations of a single machine-learning model directly affect the accuracy of the intrusion detection system, while the superiority of the proposed multi-module model in detecting unknown attacks and rare classes of attack traffic is demonstrated.
Funder
Armed Police Force Military Theory Research Program Subjects
Subject
Electrical and Electronic Engineering,Computer Networks and Communications,Hardware and Architecture,Signal Processing,Control and Systems Engineering
Reference60 articles.
1. A survey on IoT intrusion detection: Federated learning, game theory, social psychology, and explainable AI as future directions;Arisdakessian;IEEE Internet Things J.,2023
2. Evans, D. (2021, September 22). How the Next Evolution of the Internet Is Changing Everything. Internet Things 2011. Available online: http://www.cisco.com/web/about/ac79/docs/innov/IoT_IBSG_0411FINAL.pdf.
3. Wang, M., Yang, N., and Weng, N. (2023). Securing a Smart Home with a Transformer-Based IoT Intrusion Detection System. Electronics, 12.
4. Alazab, A., Khraisat, A., Singh, S., Bevinakoppa, S., and Mahdi, O.A. (2023). Routing attacks detection in 6lowpan-based internet of things. Electronics, 12.
5. An Intelligent Two-Layer Intrusion Detection System for the Internet of Things;Alani;IEEE Trans. Ind. Inform.,2022
Cited by
3 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献