Continual Learning with Strategic Selection and Forgetting for Network Intrusion Detection
Xinchen Zhang, Running Zhao, Zhihan Jiang, Handi Chen, Yulong Ding, Edith C. H. Ngai, Shuang-Hua Yang
摘要
Intrusion Detection Systems (IDS) are crucial for safeguarding digital infrastructure. In dynamic network environments, both threat landscapes and normal operational behaviors are constantly changing, resulting in concept drift. While continuous learning mitigates the adverse effects of concept drift, insufficient attention to drift patterns and excessive preservation of outdated knowledge can still hinder the IDS's adaptability. In this paper, we propose SSF (Strategic Selection and Forgetting), a novel continual learning method for IDS, providing continuous model updates with a constantly refreshed memory buffer. Our approach features a strategic sample selection algorithm to select representative new samples and a strategic forgetting mechanism to drop outdated samples. The proposed strategic sample selection algorithm prioritizes new samples that cause the ‘drifted’ pattern, enabling the model to better understand the evolving landscape. Additionally, we introduce strategic forgetting upon detecting significant drift by discarding outdated samples to free up memory, allowing the incorporation of more recent data. SSF captures evolving patterns effectively and ensures the model is aligned with the change of data patterns, significantly enhancing the IDS's adaptability to concept drift. The state-of-the-art performance of SSF on NSL-KDD and UNSW-NB15 datasets demonstrates its superior adaptability to concept drift for network intrusion detection.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper2
- Decompose to Understand, Fuse to Detect: Frequency-Decoupled Anomaly Detection for Encrypted Network TrafficXinglin Lian, Chengtai Cao, Ting Zhong, Yong Wang 等INFOCOM 2026 · 被引用 8 次
- Navigating the Latent Manifold: Proactive Concept Drift Adaptation for Resilient NIDSChao Zha, Zifeng Kang, Tian Liu, Dakun Shen 等CCS 2026
它引用的顶会 Paper8
- TESSERACT: Eliminating Experimental Bias in Malware Classification across Space and TimeFeargus Pendlebury, Fabio Pierazzi, Roberto Jordaney, Johannes Kinder 等USENIX Security 2019 · 被引用 441 次
- Throwing Darts in the Dark? Detecting Bots with Limited Data using Neural Data AugmentationSteve T. K. Jan, Qingying Hao, Tianrui Hu, Jiameng Pu 等S&P 2020 · 被引用 88 次
- FeCo: Boosting Intrusion Detection Capability in IoT Networks via Contrastive LearningNing Wang, Yimin Chen, Yang Hu, Wenjing Lou 等INFOCOM 2022 · 被引用 36 次
- Self-Evolved Dynamic Expansion Model for Task-Free Continual LearningFei Ye, Adrian G. BorsICCV 2023 · 被引用 28 次
- AOC-IDS: Autonomous Online Framework with Contrastive Learning for Intrusion DetectionXinchen Zhang, Running Zhao, Zhihan Jiang, Zhicong Sun 等INFOCOM 2024 · 被引用 27 次
相关 Paper
- Predicting the Susceptibility of Examples to Catastrophic ForgettingGuy Hacohen, Tinne TuytelaarsICML 2025
- Augmented Memory Replay-based Continual Learning Approaches for Network Intrusion DetectionSuresh Kumar Amalapuram, Sumohana S. Channappayya, Bheemarjuna Reddy TammaNeurIPS 2023 · 被引用 42 次
- ReCDA: Concept Drift Adaptation with Representation Enhancement for Network Intrusion DetectionShuo Yang, Xinran Zheng, Jinze Li, Jinfeng Xu 等KDD 2024 · 被引用 9 次
- SPIDER: A Semi-Supervised Continual Learning-based Network Intrusion Detection SystemSuresh Kumar Amalapuram, Bheemarjuna Reddy Tamma, Sumohana S. ChannappayyaINFOCOM 2024 · 被引用 25 次
- Task-Free Continual Learning via Online Discrepancy Distance LearningFei Ye, Adrian G. BorsNeurIPS 2022 · 被引用 43 次
