English
Related papers

Related papers: A new method for flow-based network intrusion dete…

200 papers

This paper introduces eX-NIDS, a framework designed to enhance interpretability in flow-based Network Intrusion Detection Systems (NIDS) by leveraging Large Language Models (LLMs). In our proposed framework, flows labelled as malicious by…

Cryptography and Security · Computer Science 2025-11-12 Paul R. B. Houssel , Siamak Layeghy , Priyanka Singh , Marius Portmann

Benchmark datasets for network intrusion detection commonly rely on synthetically generated traffic, which fails to reflect the statistical variability and temporal drift encountered in operational environments. This paper introduces…

Machine Learning · Computer Science 2025-06-23 Joshua Schraven , Alexander Windmann , Oliver Niggemann

Enhancing Network Intrusion Detection Systems (NIDS) with supervised Machine Learning (ML) is tough. ML-NIDS must be trained and evaluated, operations requiring data where benign and malicious samples are clearly labelled. Such labels…

Cryptography and Security · Computer Science 2022-03-10 Giovanni Apruzzese , Luca Pajola , Mauro Conti

Graph Neural Networks (GNNs) have garnered intensive attention for Network Intrusion Detection System (NIDS) due to their suitability for representing the network traffic flows. However, most present GNN-based methods for NIDS are…

Machine Learning · Computer Science 2024-03-05 Renjie Xu , Guangwei Wu , Weiping Wang , Xing Gao , An He , Zhengpeng Zhang

The constantly evolving digital transformation imposes new requirements on our society. Aspects relating to reliance on the networking domain and the difficulty of achieving security by design pose a challenge today. As a result,…

Cryptography and Security · Computer Science 2023-01-20 Gustavo de Carvalho Bertoli , Lourenço Alves Pereira Junior , Aldri Luiz dos Santos , Osamu Saotome

Statistical characteristics of network traffic have attracted a significant amount of research for automated network intrusion detection, some of which looked at applications of natural statistical laws such as Zipf's law, Benford's law and…

Cryptography and Security · Computer Science 2017-01-23 Aamo Iorliam , Santosh Tirunagari , Anthony T. S. Ho , Shujun Li , Adrian Waller , Norman Poh

Intrusion detection systems (IDS) are used to monitor networks or systems for attack activity or policy violations. Such a system should be able to successfully identify anomalous deviations from normal traffic behavior. Here we discuss the…

Cryptography and Security · Computer Science 2022-05-17 M. Andrecut

Intrusion detection system (IDS) is one of extensively used techniques in a network topology to safeguard the integrity and availability of sensitive assets in the protected systems. Although many supervised and unsupervised learning…

Cryptography and Security · Computer Science 2020-04-03 Yuyang Zhou , Guang Cheng , Shanqing Jiang , Mian Dai

Over the past few decades, Industrial Control Systems (ICSs) have been targeted by cyberattacks and are becoming increasingly vulnerable as more ICSs are connected to the internet. Using Machine Learning (ML) for Intrusion Detection Systems…

Cryptography and Security · Computer Science 2023-05-18 Alireza Dehlaghi-Ghadim , Mahshid Helali Moghadam , Ali Balador , Hans Hansson

Most research using machine learning (ML) for network intrusion detection systems (NIDS) uses well-established datasets such as KDD-CUP99, NSL-KDD, UNSW-NB15, and CICIDS-2017. In this context, the possibilities of machine learning…

Software-Defined Networking (SDN) is a novel networking paradigm that provides enhanced programming abilities, which can be used to solve traditional security challenges on the basis of more efficient approaches. The most important element…

Cryptography and Security · Computer Science 2018-06-12 Majd Latah , Levent Toker

We present a method to detect anomalies in a time series of flow interaction patterns. There are many existing methods for anomaly detection in network traffic, such as number of packets. However, there is non established method detecting…

Networking and Internet Architecture · Computer Science 2018-10-19 Jinfa Wang , Hai Zhao , Jiuqiang Xu , Hequn Li , Shuai Chao , Chuangyang Zheng

Normalizing Flows (NFs) are a class of generative models distinguished by a mathematically invertible architecture, where the forward pass transforms data into a latent space for density estimation, and the reverse pass generates new…

Computer Vision and Pattern Recognition · Computer Science 2025-12-05 Yang Chen , Xiaowei Xu , Shuai Wang , Chenhui Zhu , Ruxue Wen , Xubin Li , Tiezheng Ge , Limin Wang

This paper investigates the temporal analysis of NetFlow datasets for machine learning (ML)-based network intrusion detection systems (NIDS). Although many previous studies have highlighted the critical role of temporal features, such as…

Machine Learning · Computer Science 2026-05-01 Majed Luay , Siamak Layeghy , Seyedehfaezeh Hosseininoorbin , Mohanad Sarhan , Nour Moustafa , Marius Portmann

As network security threats evolve, safeguarding flow-based Machine Learning (ML)-based Network Intrusion Detection Systems (NIDS) from evasion adversarial attacks is crucial. This paper introduces the notion of feature perturb-ability and…

Cryptography and Security · Computer Science 2025-06-19 Mohamed elShehaby , Ashraf Matrawy

Network Intrusion Detection Systems (NIDS) play a crucial role in safeguarding network infrastructure against cyberattacks. As the prevalence and sophistication of these attacks increase, machine learning and deep neural network approaches…

Cryptography and Security · Computer Science 2025-08-06 Mabin Umman Varghese , Zahra Taghiyarrenani

In this paper, we propose a new method for detecting unauthorized network intrusions, based on a traffic flow model and Cisco NetFlow protocol application. The method developed allows us not only to detect the most common types of network…

Cryptography and Security · Computer Science 2017-02-20 Aleksey A. Galtsev , Andrei M. Sukhov

Cybersecurity has emerged as a critical global concern. Intrusion Detection Systems (IDS) play a critical role in protecting interconnected networks by detecting malicious actors and activities. Machine Learning (ML)-based behavior analysis…

The network security analyzers use intrusion detection systems (IDSes) to distinguish malicious traffic from benign ones. The deep learning-based IDSes are proposed to auto-extract high-level features and eliminate the time-consuming and…

Cryptography and Security · Computer Science 2023-03-07 Mahdi Soltani , Khashayar Khajavi , Mahdi Jafari Siavoshani , Amir Hossein Jahangir

Promptly discovering unknown network attacks is critical for reducing the risk of major loss imposed on system or equipment. This paper aims to develop an open-set intrusion detection model to classify known attacks as well as inferring…

Cryptography and Security · Computer Science 2024-03-08 Zhiyin Qiu , Ding Zhou , Yahui Zhai , Bo Liu , Lei He , Jiuxin Cao