In the current technological landscape, a lot of risks are present due to the availability of existing and novel kinds of attacks. For these attacks to be countered, systems that identify all the variants without any false positives and false negatives are in high demand. The existence of traditional attack detection methods, such as the signature-based algorithms, has proven that they cannot spot new attacks. This is because they work based on a database that has signatures of attacks. The other methods of detecting attacks that have been explored in this study are the hybrid and machine learning methods for detecting zero-day attacks. In this research, we are coming up with an ensemble set of machine learning algorithms that identify novel and existing attacks in real time from an existing dataset. All of these concepts are mainly based on the Confidentiality, Integrity and Availability (CIA) triad. In order to come up with this, the main method of deployment to be used is the machine learning pipeline. The study has a firm foundation based on theorems such as Bayes and the fundamental principles of computational learning theory. This is composed of stages such as the identification, cleaning, analysis and feature engineering of the data. From there, the ensemble algorithm will be implemented, its accuracy measured and then tuned to improve its efficiency.
KeywordsZero-Day AttacksMachine LearningEnsemble AlgorithmsCybersecurityAnomaly DetectionIntrusion Detection Systems (IDS)CAN Bus DatasetData Analysis
Kumar, V. and Sinha, D. (2021) A Robust Intelligent Zero-Day Cyber-Attack Detection Technique. Complex & Intelligent Systems , 7, 2211-2234. https://doi.org/10.1007/s40747-021-00396-9
Thangavel, S. and Kannan, S. (2019) Detection and Trace Back of Low and High Volume of Distributed Denial-of-Service Attack Based on Statistical Measures. Concurrency and Computation : Practice and Experience , 34, e5428. https://doi.org/10.1002/cpe.5428
Hindy, H., Atkinson, R., Tachtatzis, C., Colin, J., Bayne, E. and Bellekens, X. (2020) Utilising Deep Learning Techniques for Effective Zero-Day Attack Detection. Electronics , 9, Article 1684. https://doi.org/10.3390/electronics9101684
Abri, F., Siami-Namini, S., Khanghah, M.A., Soltani, F.M. and Namin, A.S. (2019) Can Machine/Deep Learning Classifiers Detect Zero-Day Malware with High Accuracy? 2019 IEEE International Conference on Big Data ( Big Data ), Los Angeles, 9-12 December 2019, 3252-3259. https://doi.org/10.1109/bigdata47090.2019.9006514
Radhakrishnan, K., Menon, R.R. and Nath, H.V. (2019) A Survey of Zero-Day Malware Attacks and Its Detection Methodology. TENCON 2019—2019 IEEE Region 10 Conference ( TENCON ), Kochi, 17-20 October 2019, 533-539. https://doi.org/10.1109/tencon.2019.8929620
Al-Rushdan, H., Shurman, M., Alnabelsi, S.H. and Althebyan, Q. (2019) Zero-Day Attack Detection and Prevention in Software-Defined Networks. 2019 International Arab Conference on Information Technology ( ACIT ), Al Ain, 3-4 December 2019, 278-282. https://doi.org/10.1109/acit47987.2019.8991124
Zhou, Q. and Pezaros, D. (2020) A Prediction-Based Model for Consistent Adaptive Routing in Back-Bone Networks at Extreme Situations. Electronics , 9, Article 2146. https://doi.org/10.3390/electronics9122146
Al-Rushdan, H., Shurman, M. and Alnabelsi, S. (2020) On Detection and Prevention of Zero-Day Attack Using Cuckoo Sandbox in Software-Defined Networks. The International Arab Journal of Information Technology , 17, 662-670. https://doi.org/10.34028/iajit/17/4a/11
Lahcen, R.A.M. and Mohapatra, R.N. (2022) Challenges in Cybersecurity and Machine Learning. PanAmerican Mathematical Journal , 32, 14-33.
Rong, C. and Çayirci, E. (2009) Security Attacks in Ad Hoc, Sensor and Mesh Networks. In: Çayirci, E. and Rong, C.M., Eds., Security in Wireless Ad Hoc and Sensor Networks , Wiley, 105-120.
Ko, M., Osei-Bryson, K. and Dorantes, C. (2009) Investigating the Impact of Publicly Announced Information Security Breaches on Three Performance Indicators of the Breached Firms. Information Resources Management Journal , 22, 1-21. https://doi.org/10.4018/irmj.2009040101
Kocakulak, M. and Butun, I. (2017) An Overview of Wireless Sensor Networks Towards Internet of Things. 2017 IEEE 7 th Annual Computing and Communication Workshop and Conference ( CCWC ), Las Vegas, 9-11 January 2017, 1-6. https://doi.org/10.1109/ccwc.2017.7868374
Butun, I., Osterberg, P. and Song, H. (2020) Security of the Internet of Things: Vulnerabilities, Attacks, and Countermeasures. IEEE Communications Surveys & Tutorials , 22, 616-644. https://doi.org/10.1109/comst.2019.2953364
Ablon, L. and Bogart, A. (2017) Zero Days, Thousands of Nights: The Life and Times of Zero-Day Vulnerabilities and Their Exploits. RAND Corporation. https://www.rand.org/pubs/research_reports/RR1751.html
Kaur, D. and Kaur, P. (2016) Empirical Analysis of Web Attacks. Procedia Computer Science , 78, 298-306. https://doi.org/10.1016/j.procs.2016.02.057
Vaisla, K.S. and Saini, R. (2014) Analyzing of Zero Day Attack and Its Identification Techniques. https://www.researchgate.net/profile/Dr-Kunwar-Vaisla/publication/260489192_Analyzing_of_Zero_Day_Attack_and_its_Identification_Techniques/links/0046353170069a2a06000000/Analyzing-of-Zero-Day-Attack-and-its-Identification-Techniques.pdf
Riofrío, X., Astudillo-Salinas, F., Tello-Oquendo, L. and Merchan-Lima, J. (2021) The Zero-Day Attack: Deployment and Evolution. Zenodo , 8, 39-53. https://doi.org/10.5281/zenodo.5747676
Cardenas, A.A., Baras, J.S. and Seamon, K. (2006) A Framework for the Evaluation of Intrusion Detection Systems. 2006 IEEE Symposium on Security and Privacy ( S&P ’06), Berkeley, 21-24 May 2006, 15-77. https://doi.org/10.1109/sp.2006.2
Einy, S., Oz, C. and Navaei, Y.D. (2021) The Anomaly-and Signature-Based IDS for Network Security Using Hybrid Inference Systems. Mathematical Problems in Engineering , 2021, Article ID: 6639714. https://doi.org/10.1155/2021/6639714
Oladipupo, T. (2010) Machine Learning Overview. In: Zhang, Y.G., Ed., New Advances in Machine Learning , InTech, 1-12. https://doi.org/10.5772/9374
Oladipupo, T. (2010) Types of Machine Learning Algorithms. In: Zhang, Y.G., Ed., New Advances in Machine Learning , InTech, 1-32. https://doi.org/10.5772/9385
Vitorino, J., Andrade, R., Praça, I. and Maia, E. (2021) A Comparative Analysis of Machine Learning Techniques for IoT Intrusion Detection. arXiv: 2111.13149.
Zhuang, W., Ye, Y., Chen, Y. and Li, T. (2012) Ensemble Clustering for Internet Security Applications. IEEE Transactions on Systems , Man , and Cybernetics , Part C ( Applications and Reviews ), 42, 1784-1796. https://doi.org/10.1109/tsmcc.2012.2222025
Limthong, K. (2013) Real-Time Computer Network Anomaly Detection Using Machine Learning Techniques. Journal of Advances in Computer Networks , 1, 1-5. https://doi.org/10.7763/jacn.2013.v1.1
Pandeeswari, N. and Kumar, G. (2015) Anomaly Detection System in Cloud Environment Using Fuzzy Clustering Based Ann. Mobile Networks and Applications , 21, 494-505. https://doi.org/10.1007/s11036-015-0644-x
MIT Lincoln Laboratory (2023) 1999 DARPA Intrusion Detection Evaluation Dataset. https://www.ll.mit.edu/r-d/datasets/1999-darpa-intrusion-detection-evaluation-dataset
Shaukat, K., Luo, S., Varadharajan, V., Hameed, I.A. and Xu, M. (2020) A Survey on Machine Learning Techniques for Cyber Security in the Last Decade. IEEE Access , 8, 222310-222354. https://doi.org/10.1109/access.2020.3041951
Modi, C., Patel, D., Borisaniya, B., Patel, H., Patel, A. and Rajarajan, M. (2013) A Survey of Intrusion Detection Techniques in Cloud. Journal of Network and Computer Applications , 36, 42-57. https://doi.org/10.1016/j.jnca.2012.05.003
Ibrahim Hairab, B., Aslan, H.K., Elsayed, M.S., Jurcut, A.D. and Azer, M.A. (2023) Anomaly Detection of Zero-Day Attacks Based on CNN and Regularization Techniques. Electronics , 12, Article 573. https://doi.org/10.3390/electronics12030573
Holm, H. (2014) Signature Based Intrusion Detection for Zero-Day Attacks: (Not) a Closed Chapter? 2014 47 th Hawaii International Conference on System Sciences , Waikoloa, 6-9 January 2014, 4895-4904. https://doi.org/10.1109/hicss.2014.600
Li, Z., Qin, Z., Shen, P. and Jiang, L. (2019) Zero-Shot Learning for Intrusion Detection via Attribute Representation. In: Gedeon, T., Wong, K. and Lee, M., Eds., Neural Information Processing . ICONIP 2019, Springer International Publishing, 352-364. https://doi.org/10.1007/978-3-030-36708-4_29
Reazul, M., Rahman, A. and Samad, T. (2017) A Network Intrusion Detection Framework Based on Bayesian Network Using Wrapper Approach. International Journal of Computer Applications , 166, 13-17. https://doi.org/10.5120/ijca2017913992
d’Aloisio, G., Marco, A.D. and Stillo, G. (2022) Modeling Quality and Machine Learning Pipelines through Extended Feature Models. arXiv: 2207.07528.
Olson, R.S. and Moore, J.H. (2018) Identifying and Harnessing the Building Blocks of Machine Learning Pipelines for Sensible Initialization of a Data Science Automation Tool. In: Riolo, R., Worzel, B., Goldman, B. and Tozier, B., Eds., Genetic Programming Theory and Practice XIV , Springer, 211-223. https://doi.org/10.1007/978-3-319-97088-2_14
Kaur, A. and Kaur, I. (2018) An Empirical Evaluation of Classification Algorithms for Fault Prediction in Open Source Projects. Journal of King Saud University — Computer and Information Sciences , 30, 2-17. https://doi.org/10.1016/j.jksuci.2016.04.002
Dupont, G., Lekidis, A., Hartog, J.D. and Etalle, S. (2019) Automotive Controller Area Network (CAN) Bus Intrusion Dataset v2. https://data.4tu.nl/articles/dataset/Automotive_Controller_Area_Network_CAN_Bus_Intrusion_Dataset/12696950/2
Bari, B.S., Yelamarthi, K. and Ghafoor, S. (2023) Intrusion Detection in Vehicle Controller Area Network (CAN) Bus Using Machine Learning: A Comparative Performance Study. Sensors , 23, Article 3610. https://doi.org/10.3390/s23073610