A content-based deep intrusion detection system
نویسندگان
چکیده
The growing number of Internet users and the prevalence web applications make it necessary to deal with very complex software in network. This results an increasing new vulnerabilities systems, leading increase cyber threats and, particular, zero-day attacks. cost generating appropriate signatures for these attacks is a potential motive using machine learning-based methodologies. Although there are many studies on methods attack detection, they generally use extracted features overlook raw contents. approach can lessen performance detection systems against content-based like SQL injection, Cross-site Scripting (XSS), various viruses. In this work, we propose framework, called deep intrusion (DID) system, that uses pure content traffic flows addition metadata learning phases passive DNN IDS. To end, deploy evaluate offline IDS following framework LSTM as technique. Due inherent nature learning, process high-dimensional data accordingly, discover sophisticated relations between auto traffic. proposed DID CIC-IDS2017 CSE-CIC-IDS2018 datasets. evaluation metrics, such precision recall, reach 0.992 0.998 CIC-IDS2017, 0.933 0.923 CSE-CIC-IDS2018, respectively, which show high method.
منابع مشابه
A Lightweight Intrusion Detection System Based on Specifications to Improve Security in Wireless Sensor Networks
Due to the prevalence of Wireless Sensor Networks (WSNs) in the many mission-critical applications such as military areas, security has been considered as one of the essential parameters in Quality of Service (QoS), and Intrusion Detection System (IDS) is considered as a fundamental requirement for security in these networks. This paper presents a lightweight Intrusion Detection System to prote...
متن کاملIntrusion Detection based on a Novel Hybrid Learning Approach
Information security and Intrusion Detection System (IDS) plays a critical role in the Internet. IDS is an essential tool for detecting different kinds of attacks in a network and maintaining data integrity, confidentiality and system availability against possible threats. In this paper, a hybrid approach towards achieving high performance is proposed. In fact, the important goal of this paper ...
متن کاملA Deep Learning Approach for Network Intrusion Detection System
A Network Intrusion Detection System (NIDS) helps system administrators to detect network security breaches in their organization. However, many challenges arise while developing a flexible and effective NIDS for unforeseen and unpredictable attacks. In this work, we propose a deep learning based approach to implement such an effective and flexible NIDS. We use Self-taught Learning (STL), a dee...
متن کاملArchitecture for a hardware based, TCP/IP content scanning system [intrusion detection system applications]
Hardware assisted intrusion detection systems and content scanning engines are needed to process data at multigigabit line rates. These systems, when placed within the core of the Internet, are subject to millions of simultaneous flows, with each flow potentially containing data of interest. Existing IDS systems are not capable of processing millions of flows at gigabit-per-second data rates. T...
متن کاملA Review: AIS Based Intrusion Detection System
Prevention of security breaches completely using the existing security technologies is unrealistic. As a result, intrusion detection is an important component in network security. However, many current intrusion detection systems (IDSs) are signature-based systems, The signature based IDS also known as misuse detection looks for a specific signature to match, signalling an intrusion. Provided w...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
ژورنال
عنوان ژورنال: International Journal of Information Security
سال: 2021
ISSN: ['1615-5262', '1615-5270']
DOI: https://doi.org/10.1007/s10207-021-00567-2