Anomaly-Based Intrusion Detection System Using One Dimensional and Two Dimensional Convolutions

Mohammed Hamid Abdulraheem,Najla Badie Ibraheem
DOI: https://doi.org/10.1007/978-3-030-38752-5_32
2020-01-01
Abstract:During the last years, unknown threats are increased against computer networks. For this reason, intrusion detection systems become imperative measures against these threats. Different types of machine learning models have been leveraged in anomaly-based IDS. Deep learning is an emerging discipline of machine learning. The applications of Deep learning showed good results in some fields, particularly in computer vision, natural language processing, image processing, and robots. In this research, we investigated in the intrusion detection using a deep Convolution Neural Network models. We developed four models: 1D convolution, 2D convolution, 1D&2D convolution sequentially integrated, and 1D&2D convolution parallel integrated. To train and test the models we used a state-of-the-art CICIDS2017 intrusion detection dataset. This dataset includes the latest threats and many features. The metrics used in evaluating the models, are F1-score, and Roc-Auc curve. The results were promising in detecting the attacks.
What problem does this paper attempt to address?