Facebook pixel tracking

The Science and Information (SAI) Organization publishes open-access peer-reviewed journals in computer science and artificial intelligence.

Contact Info
Website thesai.org
Follow Us
Contact Info
Follow Us
Research Article | Open Access |

Ensemble and Deep-Learning Methods for Two-Class and Multi-Attack Anomaly Intrusion Detection: An Empirical Study

Author 1: Adeyemo Victor Elijah Author 2: Azween Abdullah Author 3: NZ JhanJhi Author 4: Mahadevan Supramaniam Author 5: Balogun Abdullateef O
International Journal of Advanced Computer Science and Applications (IJACSA) · Vol. 10, No. 9 · Published 2019 · Cited by 117

DOI: https://doi.org/10.14569/IJACSA.2019.0100969

Abstract

Cyber-security, as an emerging field of research, involves the development and management of techniques and technologies for protection of data, information and devices. Protection of network devices from attacks, threats and vulnerabilities both internally and externally had led to the development of ceaseless research into Network Intrusion Detection System (NIDS). Therefore, an empirical study was conducted on the effectiveness of deep learning and ensemble methods in NIDS, thereby contributing to knowledge by developing a NIDS through the implementation of machine and deep-learning algorithms in various forms on recent network datasets that contains more recent attacks types and attackers’ behaviours (UNSW-NB15 dataset). This research involves the implementation of a deep-learning algorithm–Long Short-Term Memory (LSTM)–and two ensemble methods (a homogeneous method–using optimised bagged Random-Forest algorithm, and a heterogeneous method–an Averaged Probability method of Voting ensemble). The heterogeneous ensemble was based on four (4) standard classifiers with different computational characteristics (Naïve Bayes, kNN, RIPPER and Decision Tree). The respective model implementations were applied on the UNSW_NB15 datasets in two forms: as a two-classed attack dataset and as a multi-attack dataset. LSTM achieved a detection accuracy rate of 80% on the two-classed attack dataset and 72% detection accuracy rate on the multi-attack dataset. The homogeneous method had an accuracy rate of 98% and 87.4% on the two-class attack dataset and the multi-attack dataset, respectively. Moreover, the heterogeneous model had 97% and 85.23% detection accuracy rate on the two-class attack dataset and the multi-attack dataset, respectively.

Keywords

How to Cite this Article

Elijah, A. V., Abdullah, A., JhanJhi, N., Supramaniam, M., & O, B. A. (2019). Ensemble and Deep-Learning Methods for Two-Class and Multi-Attack Anomaly Intrusion Detection: An Empirical Study. International Journal of Advanced Computer Science and Applications, 10(9). https://doi.org/10.14569/IJACSA.2019.0100969

Elijah, Adeyemo Victor, et al.. "Ensemble and Deep-Learning Methods for Two-Class and Multi-Attack Anomaly Intrusion Detection: An Empirical Study." International Journal of Advanced Computer Science and Applications, vol. 10, no. 9, 2019, https://doi.org/10.14569/IJACSA.2019.0100969.

@article{Elijah2019,
  title     = {Ensemble and Deep-Learning Methods for Two-Class and Multi-Attack Anomaly Intrusion Detection: An Empirical Study},
  journal   = {International Journal of Advanced Computer Science and Applications},
  volume    = {10},
  number    = {9},
  year      = {2019},
  publisher = {The Science and Information Organization},
  author    = {Adeyemo Victor Elijah and Azween Abdullah and NZ JhanJhi and Mahadevan Supramaniam and Balogun Abdullateef O},
  doi       = {10.14569/IJACSA.2019.0100969},
  url       = {https://doi.org/10.14569/IJACSA.2019.0100969}
}

Open Access — licensed under a Creative Commons Attribution 4.0 International License. Unrestricted use, distribution, and reproduction in any medium, even commercially, as long as the original work is properly cited.