计算机科学
入侵检测系统
块(置换群论)
假阳性率
班级(哲学)
人工智能
编码(集合论)
特征(语言学)
图层(电子)
数据挖掘
模式识别(心理学)
机器学习
哲学
集合(抽象数据类型)
有机化学
化学
程序设计语言
语言学
数学
几何学
作者
Keyan Ren,Shuai Yuan,Chun Zhang,Yu Shi,Zhiqing Huang
标识
DOI:10.1016/j.comcom.2023.04.018
摘要
Network Intrusion Detection (NID) is an important defense strategy in modern networks to detect malicious activities in large-scale cyberspace. The current NID methods suffer from a high false positive rate, which significantly reduces the overall effectiveness of network intrusion detection systems and simultaneously increases the maintenance cost. Furthermore, the class imbalance problem associated with the intrusion detection dataset limits the detection rate for the minority classes. This paper proposes a novel hierarchical CNN-Attention network, CANET. In CANET, CNN and the Attention mechanism mingle to form a CA Block that focuses on local spatio-temporal feature extraction. The multi-layer CA Block combination can fully learn the multi-level spatio-temporal features of network attack data, which is more suitable for modern large-scale NID. Besides, for the class imbalance problem, we propose to use Equalization Loss v2 (EQL v2) to increase the minority class weight and balance the learning attention on minority classes. Extensive experiments demonstrate that CANET outperforms the state-of-the-art methods in terms of accuracy, detection rate, and false positive rate. And it efficiently improves the detection rate of minority classes. The source code for the proposed CANET models is publicly available at https://github.com/yuanshuai666/CANET.
科研通智能强力驱动
Strongly Powered by AbleSci AI