MLEsIDSs: machine learning-based ensembles for intrusion detection systems—a review

  • PDF / 1,369,655 Bytes
  • 34 Pages / 439.37 x 666.142 pts Page_size
  • 62 Downloads / 131 Views

DOWNLOAD

REPORT


MLEsIDSs: machine learning‑based ensembles for intrusion detection systems—a review Gulshan Kumar1   · Kutub Thakur2 · Maruthi Rohit Ayyagari3

© Springer Science+Business Media, LLC, part of Springer Nature 2020

Abstract Network security plays an essential role in secure communication and avoids financial loss and crippled services due to network intrusions. Intruders generally exploit the flaws of popular software to mount a variety of attacks against network computer systems. The damage caused in the network attacks may vary from a little disruption in service to on developing financial loss. Recently, intrusion detection systems (IDSs) comprising machine learning techniques have emerged for handling unauthorized usage and access to network resources. With the passage of time, a wide variety of machine learning techniques have been designed and integrated with IDSs. Still, most of the IDSs reported poor intrusion detection results using false positive rate and detection rate. For solving these issues, researchers focused on the development of ensemble classifiers involving the integration of predictions by multiple individual classifiers. The ensemble classifiers enable to compensate for the weakness of individual classifiers and use their combined knowledge to enhance its performance. This study presents motivation and comprehensive review of intrusion detection systems based on ensembles in machine learning as an extension of our previous work in the field. Particularly, different ensemble methods in the field are analysed, taking into consideration different types of ensembles, and various approaches for integrating the predictions of individual classifiers for an ensemble classifier. The representative studies are compared in chronological order for systematic and critical analysis, understanding the current challenges and status of research in the field. Finally, the study presents essential future research directions for the development of effective IDSs. Keywords  Artificial intelligence · Ensemble · Hybrid classifiers · Intrusion detection · Machine learning * Gulshan Kumar [email protected] 1

Shaheed Bhagat Singh State Technical Campus, Ferozepur, Punjab, India

2

New Jersey City University, Jersey City, USA

3

University of Dallas, Irving, USA



13

Vol.:(0123456789)



G. Kumar et al.

1 Introduction Network security plays a vital role in avoiding financial loss, protecting customers from monetary damages, avoiding disabling or crippling services, and limiting severe information loss due to network intrusions. Attackers generally exploit the configurations and vulnerabilities of popular software to mount attacks against network computer systems. The damage caused in these attacks may vary from a little disruption in services to high financial losses. Existing conventional security techniques like firewalls are only used as the first line of defence [16, 132]. These techniques can be easily bypassed by the attackers. So, there is a need to develop a mechanism called an intrusion detection s