节点文献

一种面向未知攻击检测的深度神经网络预处理方法

Unknown-Attack-Detection-Oriented DNN Preprocessing Methodology

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 陈鹏郭云飞张建朋王亚文扈红超

【Author】 CHEN Peng;GUO Yunfei;ZHANG Jianpeng;WANG Yawen;HU Hongchao;Information Engineering University;National Digital Switching System Engineering & Technological R&D Center;

【机构】 信息工程大学国家数字交换系统工程技术研究中心

【摘要】 现有的基于深度神经网络(Deep Neural Network,DNN)的检测方法对于未知攻击检测性能不佳。原因之一是现有的预处理方法并未考虑网络环境的内在特征。为解决该问题,首先提出一种新型的预处理方法,将训练集的统计特征作为网络环境的内在特征,用于测试集和检测集的预处理,以提高检测算法的性能;然后利用DNN模型进行入侵检测。对KDDCup’99、NSL-KDD和UNSW-NB15数据集的实验结果表明,与传统预处理方法相比,所提预处理方法在准确率方面表现更好,召回率也有一定程度提升。

【Abstract】 The existing detection methods based on deep neural network( DNN) have poor performance in detecting unknown attacks. One of the reasons is that the existing preprocessing methods do not consider the inherent characteristics of the network environment. In order to solve this problem,a novel method of preprocessing is proposed to improve the performance of the detection algorithms.First,statistical characteristics of the training set are treated as the inherent characteristics of the network environment,and they are utilized for the preprocessing of the test set and the detection set to improve the performance of the detection algorithm. Then a DNN model is utilized for intrusion detection. Experimental results on the KDDCup ’99,NSL-KDD and UNSW-NB15 datasets show that,compared with the traditional preprocessing method,the proposed preprocessing method performs better in terms of accuracy,and the recall is also increased to a certain extent.

【基金】 国家重点研发计划资助项目(2018YFB0804004);国家自然基金青年基金资助项目(62002384);国家自然科学基金创新研究群体资助项目(61521003)
  • 【文献出处】 信息工程大学学报 ,Journal of Information Engineering University , 编辑部邮箱 ,2021年02期
  • 【分类号】TP183;TP393.08
  • 【被引频次】1
  • 【下载频次】174
节点文献中: 

本文链接的文献网络图示:

本文的引文网络