首页 | 本学科首页   官方微博 | 高级检索  
     

一种针对基于SVM入侵检测系统的毒性攻击方法
引用本文:钱亚冠,卢红波,纪守领,周武杰,吴淑慧,雷景生,陶祥兴.一种针对基于SVM入侵检测系统的毒性攻击方法[J].电子学报,2019,47(1):59-65.
作者姓名:钱亚冠  卢红波  纪守领  周武杰  吴淑慧  雷景生  陶祥兴
作者单位:浙江科技学院理学院/大数据学院,浙江杭州,310023;浙江大学计算机学院,浙江杭州,310058;浙江科技学院信息与电子工程学院,浙江杭州,310023
基金项目:浙江省自然科学基金;浙江省自然科学基金;国家自然科学基金;国家自然科学基金;国家自然科学基金
摘    要:在机器学习被广泛应用的背景下,本文提出一种针对基于SVM(Support Vector Machine)入侵检测系统的新颖攻击方法——毒性攻击.该方法通过篡改训练数据,进而误导SVM的机器学习过程,降低入侵检测系统的分类模型对攻击流量的识别率.本文把这种攻击建模为最优化问题,利用数值方法得到攻击样本.通过包含多种攻击类型的NSL-KDD数据集进行实验,从攻击流量的召回率和精度这两个指标对攻击效果进行评估,与已有方法相比,实验结果表明本文方法可更有效地降低入侵检测系统的识别率.本文希望通过该研究进一步认识针对机器学习的新颖攻击,为下一步研究对应的防御机制提供研究基础.

关 键 词:机器学习  支持向量机  入侵检测  毒性攻击  双层优化
收稿时间:2017-11-09

A Poisoning Attack on Intrusion Detection System Based on SVM
QIAN Ya-guan,LU Hong-bo,JI Shou-ling,ZHOU Wu-jie,WU Shu-hui,LEI Jing-sheng,TAO Xiang-xing.A Poisoning Attack on Intrusion Detection System Based on SVM[J].Acta Electronica Sinica,2019,47(1):59-65.
Authors:QIAN Ya-guan  LU Hong-bo  JI Shou-ling  ZHOU Wu-jie  WU Shu-hui  LEI Jing-sheng  TAO Xiang-xing
Affiliation:1. School of Science & Big Data Science, Zhejiang University of Science and Technology, Hangzhou, Zhejiang 310023, China; 2. College of Computer Science and Technology, Zhejiang University, Hangzhou, Zhejiang 310058, China; 3. School of Information and Electronic Engineering, Zhejiang University of Science and Technology, Hangzhou, Zhejiang 310023, China
Abstract:Machine learning is widely applied in various intelligent devices including intrusion detection systems (IDS).We propose a novel approach called poising attack on IDS based on SVM.This attack is to degrade detection rate of IDS by misleading the SVM learning process with poisoned training data set.We model the poisoning attack as an optimization problem and solve it with numerical approach to get poisoned data set.At last,NSL-KDD data including several real attacks is used in our experiments,and two measures of precision and callback are used to evaluate the effectiveness.The result shows the poisoning attack approach can significantly degrade the IDS performance.This study may further understand the possible new attacks on machine learning,and provide the basis for the next study of the corresponding defense methods.
Keywords:machine learning  SVM  intrusion detection  poisoning attack  bilevel optimization  
本文献已被 万方数据 等数据库收录!
点击此处可从《电子学报》浏览原始摘要信息
点击此处可从《电子学报》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号