Developing a Siamese Network for Intrusion Detection Systems

15Citations
Citations of this article
26Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Machine Learning (ML) for developing Intrusion Detection Systems (IDS) is a fast-evolving research area that has many unsolved domain challenges. Current IDS models face two challenges that limit their performance and robustness. Firstly, they require large datasets to train and their performance is highly dependent on the dataset size. Secondly, zero-day attacks demand that machine learning models are retrained in order to identify future attacks of this type. However, the sophistication and increasing rate of cyber attacks make retraining time prohibitive for practical implementation. This paper proposes a new IDS model that can learn from pair similarities rather than class discriminative features. Learning similarities requires less data for training and provides the ability to flexibly adapt to new cyber attacks, thus reducing the burden of retraining. The underlying model is based on Siamese Networks, therefore, given a number of instances, numerous similar and dissimilar pairs can be generated. The model is evaluated using three mainstream IDS datasets; CICIDS2017, KDD Cup'99, and NSL-KDD. The evaluation results confirm the ability of the Siamese Network model to suit IDS purposes by classifying cyber attacks based on similarity-based learning. This opens a new research direction for building adaptable IDS models using non-conventional ML techniques.

References Powered by Scopus

Dimensionality reduction by learning an invariant mapping

4517Citations
N/AReaders
Get full text

A detailed analysis of the KDD CUP 99 data set

3741Citations
N/AReaders
Get full text

Toward generating a new intrusion detection dataset and intrusion traffic characterization

3035Citations
N/AReaders
Get full text

Cited by Powered by Scopus

Cyber Security in the Maritime Industry: A Systematic Survey of Recent Advances and Future Trends

73Citations
N/AReaders
Get full text

Machine Learning-Based Adaptive Synthetic Sampling Technique for Intrusion Detection

20Citations
N/AReaders
Get full text

Enhanced detection of imbalanced malicious network traffic with regularized Generative Adversarial Networks

16Citations
N/AReaders
Get full text

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Cite

CITATION STYLE

APA

Hindy, H., Tachtatzis, C., Atkinson, R., Bayne, E., & Bellekens, X. (2021). Developing a Siamese Network for Intrusion Detection Systems. In Proceedings of the 1st Workshop on Machine Learning and Systems, EuroMLSys 2021 (pp. 120–126). Association for Computing Machinery, Inc. https://doi.org/10.1145/3437984.3458842

Readers' Seniority

Tooltip

PhD / Post grad / Masters / Doc 8

73%

Lecturer / Post doc 3

27%

Readers' Discipline

Tooltip

Computer Science 8

67%

Engineering 2

17%

Social Sciences 1

8%

Psychology 1

8%

Save time finding and organizing research with Mendeley

Sign up for free