Passer à la navigation principale Passer à la recherche Passer au contenu principal

Data-Driven Evaluation of Intrusion Detectors: A Methodological Framework

  • Solayman Ayoubi
  • , Gregory Blanc
  • , Houda Jmila
  • , Thomas Silverston
  • , Sébastien Tixeuil
  • Nancy Université
  • Telecom Sudparis
  • Sorbonne Université

Résultats de recherche: Le chapitre dans un livre, un rapport, une anthologie ou une collectionContribution à une conférenceRevue par des pairs

6 Citations (Scopus)

Résumé

Intrusion detection systems are an important domain in cybersecurity research. Countless solutions have been proposed, continuously improving upon one another. Yet, and despite the introduction of distinct approaches, including machine-learning methods, the evaluation methodology has barely evolved. In this paper, we design a comprehensive evaluation framework for Machine Learning (ML)-based intrusion detection systems (IDS) and take into account the unique aspects of ML algorithms, their strengths and weaknesses. The framework design is inspired by both i) traditional IDS evaluation methods and ii) recommendations for evaluating ML algorithms in diverse application areas. Data quality being the key to machine learning, we focus on data-driven evaluation by exploring data-related issues. Our approach goes beyond evaluating intrusion detection performance (also known as effectiveness) and aims at proposing standard data manipulation methods to tackle robustness and stability. Finally, we evaluate our framework through a qualitative comparison with other IDS evaluation approaches from the state of the art.

langue originaleAnglais
titreFoundations and Practice of Security - 15th International Symposium, FPS 2022, Revised Selected Papers
rédacteurs en chefGuy-Vincent Jourdan, Laurent Mounier, Carlisle Adams, Florence Sèdes, Joaquin Garcia-Alfaro
EditeurSpringer Science and Business Media Deutschland GmbH
Pages142-157
Nombre de pages16
ISBN (imprimé)9783031301216
Les DOIs
étatPublié - 1 janv. 2023
Evénement15th International Symposium on Foundations and Practice of Security, FPS 2022 - Ottawa, Canada
Durée: 12 déc. 202214 déc. 2022

Série de publications

NomLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Volume13877 LNCS
ISSN (imprimé)0302-9743
ISSN (Electronique)1611-3349

Une conférence

Une conférence15th International Symposium on Foundations and Practice of Security, FPS 2022
Pays/TerritoireCanada
La villeOttawa
période12/12/2214/12/22

Empreinte digitale

Examiner les sujets de recherche de « Data-Driven Evaluation of Intrusion Detectors: A Methodological Framework ». Ensemble, ils forment une empreinte digitale unique.

Contient cette citation