Network attacks have became increasingly more sophisticated and stealthy due
to the advances in technologies and the growing sophistication of attackers.
Advanced Persistent Threats (APTs) are a type of attack that implement a wide
range of strategies to evade detection and be under the defence radar. Software
Defined Network (SDN) is a network paradigm that implements dynamic
configuration by separating the control plane from the network plane. This
approach improves security aspects by facilitating the employment of network
intrusion detection systems. Implementing Machine Learning (ML) techniques in
Intrusion Detection Systems (IDSs) is widely used to detect such attacks but
has a challenge when the data distribution changes. Concept drift is a term
that describes the change in the relationship between the input data and the
target value (label or class). The model is expected to degrade as certain
forms of change occur. In this paper, the primary form of change will be in
user behaviour (particularly changes in attacker behaviour). It is essential
for a model to adapt itself to deviations in data distribution. SDN can help in
monitoring changes in data distribution. This paper discusses changes in
stealth attacker behaviour. The work described here investigates various
concept drift detection algorithms. An incremental hybrid adaptive Network
Intrusion Detection System (NIDS) is proposed to tackle the issue of concept
drift in SDN. It can detect known and unknown attacks. The model is evaluated
over different datasets showing promising results.
外部データセット
APT-SDNdataset
DAPT 2020
InSDN
CICIDS 2017
IoTID20
NSL-KDD
参考文献
2017 seventh international conference on emerging security technologies (EST)
Machine learning based intrusion detection system for software defined networks
Atiku Abubakar, Bernardi Pranggono
Published: 2017
2017 IEEE Symposium on Computers and Communications (ISCC)
Flow-based intrusion detection system for SDN
Georgi A Ajaeiya
Published: 2017
Detecting Stealthy Scans in SDN using a Hybrid Intrusion Detection System
Abdullah H Alqahtani, John A Clark
Published: 2022
2022 IEEE 4th International Conference on Trust, Privacy and Security in Intelligent Systems, and Applications (TPS-ISA)
Enhanced Scanning in SDN Networks and its Detection using Machine Learning
Abdullah H Alqahtani, John A Clark
Published: 2022
IEEE Commun. Surv. Tutor.
A survey on advanced persistent threats: Techniques, solutions, challenges, and research opportunities
Alshamrani, A., Myneni, S., Chowdhary, A., Huang, D.
Published: 2019
International Conference on Discovery Science
A Network Intrusion Detection System for Concept Drifting Network Traffic Data
IEEE Transactions on Knowledge and Data Engineering
Online and non-parametric drift detection methods based on Hoeffding’s bounds
Isvani Frias-Blanco
Published: 2014
Brazilian symposium on artificial intelligence
Learning with drift detection
Joao Gama
Published: 2004
ACM computing surveys (CSUR)
A survey on concept drift adaptation
João Gama
Published: 2014
Computers & Electrical Engineering
Implementing an intrusion detection and prevention system using Software-Defined Networking: Defending against ARP spoofing attacks and Blacklisted MAC Addresses
Thomas Girdler, Vassilios G Vassilakis
Published: 2021
Machine Learning
Adaptive random forests for evolving data stream classification
Heitor M Gomes
Published: 2017
2016 International Joint Conference on Neural Networks (IJCNN)
Concept drift detection based on equal density estimation
Feng Gu
Published: 2016
IEEE Transactions on Reliability
Protecting the Internet of vehicles against advanced persistent threats: a bayesian Stackelberg game
Talal Halabi
Published: 2021
2022 6th Cyber Security in Networking Conference (CSNet)
A Stream Learning Intrusion Detection System for Concept Drifting Network Traffic
Pedro Horchulhack, Eduardo K Viegas, Martin Andreoni Lopez
Survey on sdn based network intrusion detection system using machine learning approaches
N. Sultana, N. Chilamkurti, W. Peng, R. Alhadad
Published: 2019
Advances in Artificial Intelligence: 33rd Canadian Conference on Artificial Intelligence, Canadian AI 2020
A scheme for generating a dataset for anomalous activity detection in iot networks
Imtiaz Ullah, Qusay H Mahmoud
Published: 2020
IEEE Internet of Things Magazine
A lightweight concept drift detection and adaptation framework for IoT data streams
Li Yang, Abdallah Shami
Published: 2021
2018 IEEE international conference on internet of things (IThings) and IEEE green computing and communications (GreenCom) and IEEE cyber, physical and social computing (CPSCom) and IEEE smart data (SmartData)
A concept drift based ensemble incremental learning approach for intrusion detection