A Two-Stage approach with CVAE and extreme value theory for an intrusion detection system

Srikanth Yadav., M (2023) A Two-Stage approach with CVAE and extreme value theory for an intrusion detection system. INTERNATIONAL JOURNAL OF RESEARCH IN ELECTRONICS AND COMPUTER ENGINEERING (IJRECE), 11 (1). ISSN 2348-2281

[thumbnail of 6. MSY_A Two Stage Approach with CVAE.pdf] Text
6. MSY_A Two Stage Approach with CVAE.pdf

Download (760kB)

Abstract

- This research aims to provide the framework for developing an intelligent intrusion detection system capable of classifying known and unknown attacks to protect organizations and their related information systems from catastrophic loss. Specifically, we reduce the identification risk of inferring unknown attacks by first formulating the problem of fine-grained known/novel intrusion detection as a two-stage minimization problem, where the first stage seeks a score measure for minimizing the empirical risk of misclassifying the known attacks. We developed a hierarchical intrusion detection system based on classconditioned auto-encoders due to the complex nature of the problem. In the second phase, extreme value theory describesthe distribution of reconstruction mistakes to make
distinguishing between unknown and known attacks easier
since the former tend to have more significant reconstruction
errors. We constructed a benign clustering module to study the
multimodal distribution of benign traffic to reduce the number
of false positives. The proposed method is evaluated using
two widely used intrusion detection datasets, with positive
results showing improved detection rates for previously
undiscovered attacks while maintaining a low false positive
rate

Item Type: Article
Subjects: AC Rearch Cluster
Depositing User: Unnamed user with email techsupport@mosys.org
Date Deposited: 21 Dec 2023 07:02
Last Modified: 21 Dec 2023 07:02
URI: https://ir.vignan.ac.in/id/eprint/610

Actions (login required)

View Item
View Item