Online Self-Supervised Deep Learning for Intrusion Detection Systems

TitleOnline Self-Supervised Deep Learning for Intrusion Detection Systems
Publication TypeJournal Article
Year of Publication2024
AuthorsNakip M, Gelenbe E
JournalIEEE Transactions on Information Forensics and Security
Volume19
Start Page5668
Date Published05/2024
ISSN1556-6013
KeywordsAuto-Associative Deep RNN, Botnet attacks, Deep learning, Internet of Things, Intrusion Detection, Random Neural Network (RNN), Self-Supervised Learning
Abstract

This paper proposes a novel Self-Supervised Intrusion Detection (SSID) framework, which enables a fully online {Deep Learning (DL)} based Intrusion Detection System (IDS) that requires no human intervention or prior off-line learning. The proposed framework analyzes and labels incoming traffic packets based only on the decisions of the IDS itself using an Auto-Associative Deep Random Neural Network, and on an online estimate of its statistically measured trustworthiness. The SSID framework enables IDS to adapt rapidly to time-varying characteristics of the network traffic, and eliminates the need for offline data collection. This approach avoids human errors in data labeling, and human labor and computational costs of model training and data collection. The approach is experimentally evaluated on public datasets and compared with well-known {machine learning and deep learning} models, showing that this SSID framework is very useful and advantageous as an accurate and online learning DL-based IDS for IoT systems.

This paper proposes a novel Self-Supervised Intrusion Detection (SSID) framework, which enables a fully online Deep Learning (DL) based Intrusion Detection System (IDS) that requires no human intervention or prior off-line learning. The proposed framework analyzes and labels incoming traffic packets based only on the decisions of the IDS itself using an Auto-Associative Deep Random Neural Network, and on an online estimate of its statistically measured trustworthiness. The SSID framework enables IDS to adapt rapidly to time-varying characteristics of the network traffic, and eliminates the need for offline data collection. This approach avoids human errors in data labeling, and human labor and computational costs of model training and data collection. The approach is experimentally evaluated on public datasets and compared with well-known machine learning and deep learning models, showing that this SSID framework is very useful and advantageous as an accurate and online learning DL-based IDS for IoT systems.

URLhttps://ieeexplore.ieee.org/abstract/document/10531267
DOI10.1109/TIFS.2024.3402148

PDF version: 

Historia zmian

Data aktualizacji: 25/06/2024 - 14:25; autor zmian: Mert Nakip (mnakip@iitis.pl)