{"title":"基于MLP/CNN神经网络的异常入侵检测方法","authors":"Yu Yao, Yang Wei, Fu-xiang Gao, Yao Yu","doi":"10.1109/ISDA.2006.253765","DOIUrl":null,"url":null,"abstract":"An anomaly intrusion detection approach based on hybrid MLP/CNN (multi-layer perceptron/chaotic neural network) neural network is proposed in this paper. Most anomaly detection approaches using MLP can detect novel real-time attacks, but still has high false alarm rates. Most attacks are composed of a series of anomaly events. These attacks are called time-delayed attacks, which current neural network IDSs (intrusion detection system) cannot identify efficiently. A hybrid MLP/CNN neural network is constructed in order to improve the detection rate of time-delayed attacks. While obtaining a similarly detection rate of real-time attacks as the MLP does, the proposed approach can detect time-delayed attacks efficiently with chaotic neuron. This approach also exhibits a lower false alarm rate when detects novel attacks. The simulation tests are conducted using DARPA 1998 dataset. The experimental results are presented and compared in ROC curves, which can demonstrate that the proposed approach performs exceptionally in terms of both detection rate and false alarm rate","PeriodicalId":116729,"journal":{"name":"Sixth International Conference on Intelligent Systems Design and Applications","volume":"18 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2006-10-16","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"43","resultStr":"{\"title\":\"Anomaly Intrusion Detection Approach Using Hybrid MLP/CNN Neural Network\",\"authors\":\"Yu Yao, Yang Wei, Fu-xiang Gao, Yao Yu\",\"doi\":\"10.1109/ISDA.2006.253765\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"An anomaly intrusion detection approach based on hybrid MLP/CNN (multi-layer perceptron/chaotic neural network) neural network is proposed in this paper. Most anomaly detection approaches using MLP can detect novel real-time attacks, but still has high false alarm rates. Most attacks are composed of a series of anomaly events. These attacks are called time-delayed attacks, which current neural network IDSs (intrusion detection system) cannot identify efficiently. A hybrid MLP/CNN neural network is constructed in order to improve the detection rate of time-delayed attacks. While obtaining a similarly detection rate of real-time attacks as the MLP does, the proposed approach can detect time-delayed attacks efficiently with chaotic neuron. This approach also exhibits a lower false alarm rate when detects novel attacks. The simulation tests are conducted using DARPA 1998 dataset. The experimental results are presented and compared in ROC curves, which can demonstrate that the proposed approach performs exceptionally in terms of both detection rate and false alarm rate\",\"PeriodicalId\":116729,\"journal\":{\"name\":\"Sixth International Conference on Intelligent Systems Design and Applications\",\"volume\":\"18 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2006-10-16\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"43\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Sixth International Conference on Intelligent Systems Design and Applications\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ISDA.2006.253765\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Sixth International Conference on Intelligent Systems Design and Applications","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ISDA.2006.253765","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Anomaly Intrusion Detection Approach Using Hybrid MLP/CNN Neural Network
An anomaly intrusion detection approach based on hybrid MLP/CNN (multi-layer perceptron/chaotic neural network) neural network is proposed in this paper. Most anomaly detection approaches using MLP can detect novel real-time attacks, but still has high false alarm rates. Most attacks are composed of a series of anomaly events. These attacks are called time-delayed attacks, which current neural network IDSs (intrusion detection system) cannot identify efficiently. A hybrid MLP/CNN neural network is constructed in order to improve the detection rate of time-delayed attacks. While obtaining a similarly detection rate of real-time attacks as the MLP does, the proposed approach can detect time-delayed attacks efficiently with chaotic neuron. This approach also exhibits a lower false alarm rate when detects novel attacks. The simulation tests are conducted using DARPA 1998 dataset. The experimental results are presented and compared in ROC curves, which can demonstrate that the proposed approach performs exceptionally in terms of both detection rate and false alarm rate