Towards Evaluation of NIDSs in Adversarial Setting
Towards Evaluation of NIDSs in Adversarial Setting
复制标题
DOI:
10.1145/3359992.3366642
复制
发表时间:
2019-12
期刊:
影响因子:
--
通讯作者:
Mohammad J. Hashemi;Greg Cusack;Eric Keller
中科院分区:
文献类型:
--
作者:
Mohammad J. Hashemi;Greg Cusack;Eric Keller
Signature-based Network Intrusion Detection Systems (NIDSs) have traditionally been used to detect malicious traffic, but they are incapable of detecting new threats. As a result, anomaly-based NIDSs, built on neural networks, are beginning to receive attention due to their ability to seek out new attacks. However, it has been shown that neural networks are vulnerable to adversarial example attacks in other domains. But, previously proposed anomaly-based NIDSs have not been evaluated in such adversarial settings. In this paper, we show how to evaluate an anomaly-based NIDS trained on network traffic in the face of adversarial inputs. We show how to craft adversarial inputs in the highly constrained network domain, and we evaluate 3 recently proposed NIDSs in an adversarial setting.