4.6 Article

A Hybrid parallel deep learning model for efficient intrusion detection based on metric learning

期刊

CONNECTION SCIENCE
卷 34, 期 1, 页码 551-577

出版社

TAYLOR & FRANCIS LTD
DOI: 10.1080/09540091.2021.2024509

关键词

Network intrusion detection; deep learning; hybrid parallel network; multi-classification; feature fusion; metric learning

资金

  1. National Natural Science Foundation of China [61672338, 61873160]
  2. Natural Science Foundation of Shanghai [21ZR1426500]

向作者/读者索取更多资源

This paper proposes an efficient hybrid parallel deep learning model (HPM) for intrusion detection, which improves the accuracy of classifying malicious network traffic by constructing parallel CNN architectures and parsing temporal information of the fused features. Additionally, an improved traffic feature extraction method is proposed to reduce redundant features and accelerate network convergence. Experimental results demonstrate that the HPM achieves a detection accuracy of 99% for each malicious class, with a 5%-10% improvement compared to other models.
With the rapid development of network technology, a variety of new malicious attacks appear while attack methods are constantly updated. As the attackers exploit the vulnerabilities of popular third-party components to invade target websites, further improving the classification accuracy of malicious network traffic is the key to improving the performance of abnormal traffic detection. Existing intrusion detection systems may suffer from incomplete feature extraction and low classification accuracy. Thus, this paper proposes an efficient hybrid parallel deep learning model (HPM) for intrusion detection based on margin learning. First, HPM constructs two parallel CNN architectures and fuses the spatial features obtained through full convolution. Secondly, the temporal information of the fused features is parsed separately using two parallel LSTMs. Finally, the extracted spatial-temporal features are fed into the CosMargin classifier for classification detection after global convolution and global pooling. Besides, this paper proposes an improved traffic feature extraction method, which not only reduces redundant features but also speeds up the convergence speed of the network. In the experiment, our HPM has achieved 99% detection accuracy of each malicious class, ranging from 5%-10% improvement with other models, which demonstrates the superiority of our proposed model.

作者

我是这篇论文的作者
点击您的名字以认领此论文并将其添加到您的个人资料中。

评论

主要评分

4.6
评分不足

次要评分

新颖性
-
重要性
-
科学严谨性
-
评价这篇论文

推荐

暂无数据
暂无数据