English
Related papers

Related papers: KnowML: Improving Generalization of ML-NIDS with A…

200 papers

Large Language Models (LLMs) have revolutionized various fields with their exceptional capabilities in understanding, processing, and generating human-like text. This paper investigates the potential of LLMs in advancing Network Intrusion…

Cryptography and Security · Computer Science 2025-07-08 Shuo Yang , Xinran Zheng , Xinchen Zhang , Jinfeng Xu , Jinze Li , Donglin Xie , Weicai Long , Edith C. H. Ngai

Machine learning has brought significant advances in cybersecurity, particularly in the development of Intrusion Detection Systems (IDS). These improvements are mainly attributed to the ability of machine learning algorithms to identify…

Cryptography and Security · Computer Science 2024-10-23 Sabrine Ennaji , Fabio De Gaspari , Dorjan Hitaj , Alicia Kbidi , Luigi V. Mancini

Network Intrusion Detection Systems (NIDSs) are important tools for the protection of computer networks against increasingly frequent and sophisticated cyber attacks. Recently, a lot of research effort has been dedicated to the development…

Networking and Internet Architecture · Computer Science 2023-05-12 Mohanad Sarhan , Siamak Layeghy , Marius Portmann

Large Language Models (LLMs) have revolutionised natural language processing tasks, particularly as chat agents. However, their applicability to threat detection problems remains unclear. This paper examines the feasibility of employing…

Cryptography and Security · Computer Science 2025-04-21 Paul R. B. Houssel , Priyanka Singh , Siamak Layeghy , Marius Portmann

Network Intrusion Detection Systems (NIDS) face important limitations. Signature-based methods are effective for known attack patterns, but they struggle to detect zero-day attacks and often miss modified variants of previously known…

Cryptography and Security · Computer Science 2026-04-08 Md Shamimul Islam , Luis G. Jaimes , Ayesha S. Dina

Security of information passing through the Internet is threatened by today's most advanced malware ranging from orchestrated botnets to simpler polymorphic worms. These threats, as examples of zero-day attacks, are able to change their…

Cryptography and Security · Computer Science 2020-12-22 Soroush M. Sohi , Jean-Pierre Seifert , Fatemeh Ganji

A Network Intrusion Detection System (NIDS) is an important tool that identifies potential threats to a network. Recently, different flow-based NIDS designs utilizing Machine Learning (ML) algorithms have been proposed as potential…

Cryptography and Security · Computer Science 2023-06-09 Loc Gia Nguyen , Kohei Watabe

Machine learning (ML), especially deep learning (DL) techniques have been increasingly used in anomaly-based network intrusion detection systems (NIDS). However, ML/DL has shown to be extremely vulnerable to adversarial attacks, especially…

Cryptography and Security · Computer Science 2021-06-09 Dongqi Han , Zhiliang Wang , Ying Zhong , Wenqi Chen , Jiahai Yang , Shuqiang Lu , Xingang Shi , Xia Yin

State-of-the-art deep learning (DL)-based network intrusion detection systems (NIDSs) offer limited "explainability". For example, how do they make their decisions? Do they suffer from hidden correlations? Prior works have applied…

Cryptography and Security · Computer Science 2025-09-24 Ayush Kumar , Vrizlynn L. L. Thing

Due to their massive success in various domains, deep learning techniques are increasingly used to design network intrusion detection solutions that detect and mitigate unknown and known attacks with high accuracy detection rates and…

Cryptography and Security · Computer Science 2021-12-08 Huda Ali Alatwi , Charles Morisset

Network intrusion detection systems (NIDSs) play an important role in computer network security. There are several detection mechanisms where anomaly-based automated detection outperforms others significantly. Amid the sophistication and…

Analysts in Security Operations Centers (SOCs) are often occupied with time-consuming investigations of alerts from Network Intrusion Detection Systems (NIDS). Many NIDS rules lack clear explanations and associations with attack techniques,…

Cryptography and Security · Computer Science 2024-12-17 Nir Daniel , Florian Klaus Kaiser , Shay Giladi , Sapir Sharabi , Raz Moyal , Shalev Shpolyansky , Andres Murillo , Aviad Elyashar , Rami Puzis

Network Intrusion Detection Systems (NIDS) are essential tools for detecting network attacks and intrusions. While extensive research has explored the use of supervised Machine Learning for attack detection and characterisation, these…

Cryptography and Security · Computer Science 2026-04-23 Georgios Anyfantis , Pere Barlet-Ros

The use of Machine Learning (ML) techniques in Intrusion Detection Systems (IDS) has taken a prominent role in the network security management field, due to the substantial number of sophisticated attacks that often pass undetected through…

Networking and Internet Architecture · Computer Science 2020-09-22 Mario Di Mauro , Giovanni Galatro , Antonio Liotta

This survey systematizes the evolution of network intrusion detection systems (NIDS), from conventional methods such as signature-based and neural network (NN)-based approaches to recent integrations with large language models (LLMs). It…

Cryptography and Security · Computer Science 2025-11-11 Yaokai Feng , Kouichi Sakurai

Graph Neural Network (GNN)-based network intrusion detection systems (NIDS) are often evaluated on single datasets, limiting their ability to generalize under distribution drift. Furthermore, their adversarial robustness is typically…

Cryptography and Security · Computer Science 2025-07-16 Zhonghao Zhan , Huichi Zhou , Hamed Haddadi

Network threat detection has been challenging due to the complexities of attack activities and the limitation of historical threat data to learn from. To help enhance the existing practices of using analytics, machine learning, and…

Machine Learning · Computer Science 2025-05-15 Lili Zhang , Quanyan Zhu , Herman Ray , Ying Xie

Machine learning based network intrusion detection systems are vulnerable to adversarial attacks that degrade classification performance under both gradient-based and distribution shift threat models. Existing defenses typically apply…

Cryptography and Security · Computer Science 2026-03-03 Oluseyi Olukola , Nick Rahimi

Network security is a critical concern in the digital landscape of today, with users demanding secure browsing experiences and protection of their personal data. This study explores the dynamic integration of Machine Learning (ML)…

Networking and Internet Architecture · Computer Science 2026-04-17 Pablo Benlloch , Oscar Romero , Antonio Leon , Jaime Lloret

With massive data being generated daily and the ever-increasing interconnectivity of the world's Internet infrastructures, a machine learning based intrusion detection system (IDS) has become a vital component to protect our economic and…

Cryptography and Security · Computer Science 2021-08-20 Zachary Tauscher , Yushan Jiang , Kai Zhang , Jian Wang , Houbing Song