Application of Representation Learning-Based Chronological Modeling for Network Intrusion Detection

Application of Representation Learning-Based Chronological Modeling for Network Intrusion Detection

Nitin O. Mathur, Chengcheng Li, Bilal Gonen, Kijung Lee
Copyright: © 2022 |Pages: 32
DOI: 10.4018/IJISP.291701
Article PDF Download
Open access articles are freely available for download

Abstract

An autoencoder has the potential to overcome the limitations of current intrusion detection methods by recognizing benign user activity rather than differentiating between benign and malicious activity. However, the line separating them is quite blurry with a significant overlap. The first part of this study aims to investigate the rationale behind this overlap. The results suggest that although a subset of traffic cannot be separated without labels, timestamps have the potential to be leveraged for identification of activity that does not conform to the normal or expected behavior of the network. The second part aims to eliminate dependence on visual-inspections by exploring automation. The trend of errors for HTTP traffic was modeled chronologically using resampled data and moving averages. This model successfully identified attacks that had orchestrated over HTTP within their respective time slots. These results support the hypothesis that it is technically feasible to build an anomaly-based intrusion detection system where each individual observation need not be categorized.
Article Preview
Top

Contribution

This work presents a new perspective to the autoencoder-based model by leveraging timestamps, which have often been ignored in the literature. The proposed solution does not eliminate the overlap or categorize each individual packet or flow. Instead, it identifies deviations from the expected behavior of the network by tracking consistent irregularities in autoencoder reconstruction errors over a period of time.

Complete Article List

Search this Journal:
Reset
Volume 18: 1 Issue (2024)
Volume 17: 1 Issue (2023)
Volume 16: 4 Issues (2022): 2 Released, 2 Forthcoming
Volume 15: 4 Issues (2021)
Volume 14: 4 Issues (2020)
Volume 13: 4 Issues (2019)
Volume 12: 4 Issues (2018)
Volume 11: 4 Issues (2017)
Volume 10: 4 Issues (2016)
Volume 9: 4 Issues (2015)
Volume 8: 4 Issues (2014)
Volume 7: 4 Issues (2013)
Volume 6: 4 Issues (2012)
Volume 5: 4 Issues (2011)
Volume 4: 4 Issues (2010)
Volume 3: 4 Issues (2009)
Volume 2: 4 Issues (2008)
Volume 1: 4 Issues (2007)
View Complete Journal Contents Listing