Skip to main navigation Skip to search Skip to main content

PANDA: Practical Adversarial Attack Against Network Intrusion Detection

  • Subrat Kumar Swain
  • , Vireshwar Kumar
  • , Guangdong Bai
  • , Dan Dongseong Kim

Research output: Chapters, Conference Papers, Creative and Literary WorksRGC 32 - Refereed conference paper (with host publication)peer-review

Abstract

While adversarial machine learning (AML) attacks have become prevalent in the computer vision (CV) domain, their applications in other domains, such as network intrusion detection systems (NIDS), remain limited. This gap stems from the lack of a well-defined input space in non-image domains, hindering the generation of adversarial examples. Unlike CV problems, where the input space is the feature space, other domains generally lack a precise inverse mapping from the feature space to the problem space. In this work, we propose PANDA, a novel approach that bridges this gap and enables AML attacks against NIDS. PANDA represents a series of packets as images for training a surrogate NIDS model. Benefiting from the invertibility of this representation, PANDA leverages well-evolved image-based AML attacks to generate adversarial examples against the surrogate model. It then repurposes the adversarial examples from the surrogate model to evade the target NIDS model. We demonstrate the effectiveness of PANDA by successfully crafting adversarial network intrusions with the UQ-IoT dataset. This work establishes a framework for transferring AML attacks from the CV domain to the network domain, opening new avenues for attack modelling and defence strategies in NIDS. © 2024 IEEE.
Original languageEnglish
Title of host publicationProceedings - 2024 54th Annual IEEE/IFIP International Conference on Dependable Systems and Networks - Supplemental Volume, DSN-S 2024
Place of PublicationLos Alamitos, Calif.
PublisherIEEE
Pages28-32
Number of pages5
ISBN (Electronic)9798350395709
ISBN (Print)9798350395716
DOIs
Publication statusPublished - 2024
Externally publishedYes
Event54th Annual IEEE/IFIP International Conference on Dependable Systems and Networks - Supplemental Volume (DSN-S 2024) - Brisbane, Australia
Duration: 24 Jun 202427 Jun 2024

Publication series

NameProceedings - Annual IEEE/IFIP International Conference on Dependable Systems and Networks - Supplemental Volume, DSN-S
ISSN (Print)2833-2903
ISSN (Electronic)2833-292X

Conference

Conference54th Annual IEEE/IFIP International Conference on Dependable Systems and Networks - Supplemental Volume (DSN-S 2024)
PlaceAustralia
CityBrisbane
Period24/06/2427/06/24

Funding

This work was supported by the Ministry of Electronics and Information Technology (MeitY), Government of India.

Research Keywords

  • Adversarial Attacks
  • Network Security
  • NIDS
  • Robustness

Fingerprint

Dive into the research topics of 'PANDA: Practical Adversarial Attack Against Network Intrusion Detection'. Together they form a unique fingerprint.

Cite this