Pith. sign in

REVIEW 1 cited by

Explaining Network Intrusion Detection System Using Explainable AI Framework

Not yet reviewed by Pith; the record is open.

This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.

SPECIMEN: schema-true, not a live event

T0 review · schema-true

One-sentence machine reading of the paper's core claim.

pith:XXXXXXXX · record.json · timestamp

arxiv 2103.07110 v1 pith:5AODHFDM submitted 2021-03-12 cs.CR cs.AI

classification cs.CRcs.AI
keywords detectionintrusionnetworkexplanationssystemdeepexplainablelearning
verification ladder T0 review T1 audit T2 compute T3 formal
0 comments
read the original abstract

Cybersecurity is a domain where the data distribution is constantly changing with attackers exploring newer patterns to attack cyber infrastructure. Intrusion detection system is one of the important layers in cyber safety in today's world. Machine learning based network intrusion detection systems started showing effective results in recent years. With deep learning models, detection rates of network intrusion detection system are improved. More accurate the model, more the complexity and hence less the interpretability. Deep neural networks are complex and hard to interpret which makes difficult to use them in production as reasons behind their decisions are unknown. In this paper, we have used deep neural network for network intrusion detection and also proposed explainable AI framework to add transparency at every stage of machine learning pipeline. This is done by leveraging Explainable AI algorithms which focus on making ML models less of black boxes by providing explanations as to why a prediction is made. Explanations give us measurable factors as to what features influence the prediction of a cyberattack and to what degree. These explanations are generated from SHAP, LIME, Contrastive Explanations Method, ProtoDash and Boolean Decision Rules via Column Generation. We apply these approaches to NSL KDD dataset for intrusion detection system and demonstrate results.

Discussion (0). Sign in to comment.

Forward citations

Cited by 1 Pith paper

Reviewed papers in the Pith corpus that reference this work. Sorted by Pith novelty score. Full citation record

  1. Evaluating explainable AI for deep learning-based network intrusion detection system alert classification

    cs.CR 2025-06 reject novelty 5.0 of 10

    On a real-world TalTech SOC NIDS alert dataset, DeepLIFT explanations for an LSTM alert classifier scored highest on faithfulness, robustness, complexity, and analyst-based reliability among LIME, SHAP, Integrated Gra...

Pith tools