Network intrusion detection method and system

A network intrusion detection and network technology, applied in the field of network security, can solve problems such as intrusion detection model failure

Active Publication Date: 2020-05-29
BEIJING UNIV OF POSTS & TELECOMM
View PDF3 Cites 10 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

At present, most of the algorithms are based on the assumption of a closed world. During the classification process, only the categories seen during training are considered, and only the accuracy of fixed closed-set classes is evaluated, while the actually deployed IDS is in a dynamic and open environment, new network intrusions will continue to appear, because the training data set is difficult to cover all the network intrusions that will occur, the intrusion detection model constructed based on the incomplete training data set may misdetect new network intrusions as existing intrusions or Existing normal behavior, which causes the intrusion detection model to fail to detect unknown network intrusions

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Network intrusion detection method and system
  • Network intrusion detection method and system
  • Network intrusion detection method and system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0048] In order to make the purpose, technical solutions and advantages of the embodiments of the present invention clearer, the technical solutions in the embodiments of the present invention will be clearly and completely described below in conjunction with the drawings in the embodiments of the present invention. Obviously, the described embodiments It is a part of embodiments of the present invention, but not all embodiments. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without creative efforts fall within the protection scope of the present invention.

[0049] IDS is a necessary security mechanism for dealing with network intrusion and identifying malicious activities in computer network traffic. It is used to discover, determine and identify unauthorized use, copying, modification and destruction in information systems, and plays a vital role in information security technology. role. In early r...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The embodiment of the invention provides a network intrusion detection method and system. The method comprises the steps of detecting to-be-detected network data based on a trained network intrusion detection model, analyzing and judging an obtained detection result, and if it is judged that the to-be-detected network data is known network data, performing fine-grained classification on the knownnetwork data according to the detection result; if it is judged that the to-be-detected network data is the network unknown category intrusion data, clustering the network unknown category intrusion data to obtain clustering centroids of all categories in the network unknown category intrusion data; and updating the classifier of the trained network intrusion detection model according to the clustering centroid of each category in the network unknown category intrusion data so as to perform intrusion detection on the network unknown category intrusion data in the subsequent to-be-detected network data according to the updated network intrusion detection model. According to the embodiment of the invention, recognition and learning of unknown invasion of the network are realized.

Description

technical field [0001] The invention relates to the technical field of network security, in particular to a network intrusion detection method and system. Background technique [0002] Today, with the rapid development of 5G technology and the widespread use of IoT technology, a large number of physical devices are connected to the network, making the entire network vulnerable to various security threats. Most existing network systems use firewalls for prevention, and an intrusion detection system (Intrusion Detection System, referred to as IDS) is considered as the second line of defense. [0003] However, there is a serious disconnect between existing machine learning-based and deep learning-based intrusion detection solutions and those actually deployed by IDSs. Specifically, most of the existing algorithms are based on some flawed assumptions, which in turn distort their mapping to actually deployed IDSs. At present, most of the algorithms are based on the assumption o...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F21/55G06K9/62G06N3/04
CPCG06F21/55G06N3/045G06F18/23213G06F18/214
Inventor 张勇郭达张曌程振杰李俊杰牛颉高杨马腾滕
Owner BEIJING UNIV OF POSTS & TELECOMM
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products