Intrusion Detection System Based on Multi-Level Feature Extraction and Inductive Network
Abstract
1. Introduction
- Multi-Level Feature Extraction: A multi-level network feature learning method (FCN–Transformer) is proposed to address network traffic feature extraction challenges. Fully Convolutional Networks (FCNs) are used as input Encoders for Transformers. FCNs effectively capture local spatial patterns in raw network traffic, minimizing reliance on manual feature engineering, while the self-attention mechanism of Transformers models long-range dependencies and complex temporal patterns. This hybrid architecture provides robust multi-scale feature representation, making it well-suited for high-dimensional and sequential network data.
- Inductive Learning Module: An intrusion detection method based on inductive networks is proposed to tackle data imbalance and few-shot unknown attack detection issues. By introducing an inductive learning module equipped with a dynamic routing mechanism, robust class vectors are generated from limited samples, enabling effective classification of unknown attack types. Compared to traditional supervised learning methods, this module supports zero-shot and cross-dataset classification, significantly improving the applicability and generalization ability of the model in scenarios with insufficient labeled data.
- Modular and Explainable Design: By utilizing the explainability of class vector representations and the modular structure of FCN–Transformer, MFEI-IDS provides insights into its decision-making process, addressing common criticisms regarding the lack of explainability in deep learning models.
2. Related Work
2.1. Intrusion Detection System Based on Deep Learning
2.2. Intrusion Detection System Based on Small-Sample Learning
2.3. Summary and Gaps
3. Method
3.1. Model Architecture Design
3.2. FCN–Transformer Encoder
3.2.1. Data Preprocessing
3.2.2. Local Spatial Feature Extraction
3.2.3. Global Temporal Feature Extraction
3.3. Inductive Model
| Algorithm 1: Dynamic Routing Induction | 
| Require: Support Set Sample Vectors: = 0 Ensure: Class Vector: 1: for all samples j = 1, …, Κ in class i do 2: 3: for iter iterations do 4: di = softmax(bi) 5: 6: 7: for all samples j = 1, …, K in class i do 8: 9: end for 10: Return | 
3.4. Relationship Model
4. Experiment
4.1. Dataset
4.2. FCN–Transformer Encoder Experiment
4.2.1. Parameter Experiment of FCN Transformer Encoder
4.2.2. Comparison of FCN–Transformer with Other Models
4.3. Analysis of Experimental Results
4.3.1. Comparison with Other Small-Sample Learning Models
4.3.2. Comparison with Full Sample Learning
4.4. Experimental Results Across Datasets
4.5. Results of Zero-Sample Unknown Intrusion Experiments
5. Conclusions
- (1)
- In terms of real-time inference and processing, the current design of MFEI-IDS is primarily tailored to batch processing. This approach requires the completion of data collection, slicing, cleaning, and preprocessing before performing intrusion detection. While effective for offline detection tasks, this batch analysis framework may face limitations in scenarios demanding real-time responses. For instance, existing session-level slicing methods efficiently aggregate contextual traffic information but rely on session completion prior to processing, which can introduce delays in dynamic and high-speed network environments. To overcome these limitations and meet the demands of real-time inference, several optimizations can be explored. One potential direction is the introduction of stream processing frameworks, utilizing sliding windows and stream-level slicing techniques to facilitate the real-time analysis of incomplete sessions, thereby reducing response time. Additionally, optimizing the data preprocessing module by simplifying data cleaning and filling processes can lower the complexity of preprocessing steps. Incorporating dynamic data truncation strategies may further reduce latency. Furthermore, enhancing the model architecture to support lightweight operation and incremental inference is essential. By refining the FCN and Transformer modules, the system can incrementally process incoming packets, achieving efficient real-time inference. In practical applications, the implementation of real-time inference requires a careful balance among model accuracy, response speed, and computational resources. While the current model is primarily designed for offline detection, optimizing it for real-time inference represents an important avenue for future research, particularly in scenarios that require rapid detection of zero-day attacks and high-frequency traffic anomalies.
- (2)
- Further Optimization of the Feature Extraction Model: The experimental results demonstrate that bidirectional networks, such as BiGRU, outperform more complex models like LSTM in feature extraction, underscoring the importance of comprehensive feature extraction for model performance. This advantage likely arises from the ability of bidirectional networks to simultaneously capture both forward and backward sequence information, thereby providing a more complete representation of temporal dependencies and contextual features. To further optimize the feature extraction process, the introduction of the BERT model as the backbone for temporal feature extraction is a promising direction. BERT, a deep bidirectional model based on the Transformer architecture, is capable of capturing global dependencies in long sequences with high precision. Additionally, its pretraining and fine-tuning mechanisms enable the model to leverage extensive existing datasets, significantly enhancing generalization performance, particularly in few-shot scenarios.For the extraction of local spatial features, an improved WordPiece tokenization method could be employed for traffic packet analysis. Traditional tokenization methods may lead to the loss of fine-grained features within traffic data, whereas an enhanced WordPiece method can more precisely extract local features, such as protocol fields or application-layer data details. By incorporating this method, finer-grained embedding vectors can be constructed, enabling the model to exhibit stronger analytical capabilities when handling complex traffic patterns. Combining the BERT model with an optimized tokenization approach would not only strengthen the extraction of temporal and local features but also fully exploit the multi-scale characteristics of network traffic. This integration would further enhance the model’s detection accuracy and robustness. Such an optimization strategy offers a robust theoretical foundation and practical potential for the application of the model in complex traffic environments.
- (3)
- Memory Mechanism in Few-Shot Learning: Current few-shot learning models face the challenge of catastrophic forgetting when switching between tasks in large-scale categorical datasets. Catastrophic forgetting reduces the ability of intrusion detection systems to generalize across tasks and retain prior knowledge, significantly impacting overall performance. This issue leads to instability in key performance metrics, such as accuracy and recall, thereby undermining the reliability of the system. Moreover, the loss of prior knowledge weakens the system’s capability to detect unknown attacks, as it struggles to identify anomalies based on previously acquired information. Additionally, catastrophic forgetting increases the need for retraining, which elevates computational costs and decreases adaptability to emerging threats. To address this challenge, memory-enhanced modules based on Transformer architectures could be introduced. While few-shot learning models can effectively detect unknown attacks, they currently lack the capability to further classify these attacks. Future research could explore fine-grained classification mechanisms to improve the model’s classification performance and enhance its ability to handle unknown attacks.
- (4)
- Intelligent Detection with Knowledge Graphs: The integration of knowledge graphs represents a critical future direction in network intrusion detection. By constructing semantic networks of attack paths, behavior patterns, and their interrelationships, knowledge graphs provide intuitive logical associations and contextual information for analyzing complex attack behaviors. This approach enables the integration of multi-source heterogeneous data, uncovering potential attack paths and anomalous patterns, thereby equipping detection systems with more comprehensive analytical capabilities. The application of knowledge graphs in intrusion detection is primarily reflected in three areas. First, they facilitate the integration of attacker behavior characteristics, target system vulnerabilities, and attack techniques, providing a comprehensive understanding of attacks. Second, when combined with inference engines, knowledge graphs enable the real-time evaluation of anomalous traffic and rapid response, allowing for the inference of potential attack types and their consequences. Third, they enhance system explainability by visually presenting the reasoning processes and related cases, thereby improving the credibility of detection results. Nevertheless, constructing and maintaining high-quality knowledge graphs poses significant challenges, such as addressing data sparsity, dynamic changes, and complex entity relationships. Future research could explore automated knowledge graph construction techniques, such as extracting entities and relationships from security reports and logs. Furthermore, the introduction of dynamic updating mechanisms would ensure that knowledge graphs remain consistent with the latest attack patterns. Integrating knowledge graphs into intrusion detection not only enhances detection accuracy and real-time response capabilities but also provides profound insights into complex attack behaviors, offering robust support for combating modern cybersecurity threats.
Author Contributions
Funding
Data Availability Statement
Conflicts of Interest
References
- Spadaccino, P.; Cuomo, F. Intrusion detection systems for IoT: Opportunities and challenges offered by edge computing. ITU J. Future Evol. Technol. 2022, 3, 408–420. [Google Scholar] [CrossRef]
- Wang, Z. Deep Learning-Based Intrusion Detection with Adversaries. IEEE Access 2018, 6, 38367–38384. [Google Scholar] [CrossRef]
- Ferrag, M.A.; Shu, L.; Yang, X.; Derhab, A.; Maglaras, L. Security for Intelligent Autonomous Networks: A Survey. IEEE Commun. Surv. Tutor. 2020, 22, 2282–2314. [Google Scholar] [CrossRef]
- Manocchio, A.; Tinnirello, I. FlowTransformer: A Novel Approach for Intrusion Detection in IoT Environments Using Transformers. IoT Secur. J. 2021, 9, 141–158. [Google Scholar] [CrossRef]
- Javaid, A.; Niyaz, Q.; Sun, W.; Alam, M. A Deep Learning Approach for Network Intrusion Detection System. In Proceedings of the 9th EAI International Conference on Bio-Inspired Information and Communications Technologies (Formerly BIONETICS), New York, NY, USA, 3–5 December 2015; pp. 21–26. [Google Scholar] [CrossRef]
- Shu, J.; Zhang, Y.; Li, X. Few-shot Learning for Intrusion Detection: A Novel Prototype Network-based Approach. IEEE Trans. Inf. Forensics Secur. 2020, 15, 5036–5048. [Google Scholar] [CrossRef]
- Vaswani, A.; Shazeer, N.; Parmar, N.; Uszkoreit, J.; Jones, L.; Gomez, A.N.; Kaiser, L.; Polosukhin, I. Attention is All You Need. Adv. Neural Inf. Process. Syst. 2017, 30, 5998–6008. [Google Scholar]
- Zhang, W.; Lu, H.; Zhou, H.; Liu, X. FlowTransformer: A Hybrid CNN and Transformer Model for Network Traffic Analysis. IEEE Access 2021, 9, 88878–88890. [Google Scholar] [CrossRef]
- Zhang, J.; Wang, H.; Sun, Y. FlowTransformer: A Transformer-based Framework for Network Intrusion Detection. Appl. Intell. 2023, 56, 2917–2970. [Google Scholar] [CrossRef]
- Wei, G.; Wang, Z. Adoption and realization of deep learning in network traffic anomaly detection device design. Soft Comput. 2021, 25, 1147–1158. [Google Scholar] [CrossRef]
- Deng, H.; Sun, W.; Luo, H.; Feng, D. Random Forest and LSTM-Based Network Anomaly Detection. IEEE Access 2022, 10, 22837–22847. [Google Scholar] [CrossRef]
- Alhaj, T.; Al-Hadhrami, A.; Mohammad, R.; Al-Khanjari, Z. Deep Learning and Attention Mechanisms for Traffic Classification: Challenges and Future Directions. J. Artif. Intell. Soft Comput. Res. 2023, 13, 59–71. [Google Scholar] [CrossRef]
- Luo, S.; Zhao, Z.; Hu, Q.; Liu, Y. A hierarchical CNN-transformer model for network intrusion detection. In Proceedings of the 2nd International Conference on Applied Mathematics, Modelling, and Intelligent Computing (CAMMIC 2022), Kunming, China, 25–27 March 2022. [Google Scholar] [CrossRef]
- Chen, X.; Li, J.; Zhang, H. Transformer-Based Intrusion Detection System for Network Security. J. Netw. Comput. Appl. 2023, 234, 104527. [Google Scholar] [CrossRef]
- Shu, Z.; Liu, Z.; Shen, C.; Wang, H. Few-shot learning for intrusion detection system. In Proceedings of the 2018 IEEE International Conference on Big Data (Big Data), Seattle, WA, USA, 10–13 December 2018; pp. 5473–5477. [Google Scholar]
- Zhao, Y.; Chen, Y.; Wu, Y.; Zhang, X. Cross-domain few-shot learning for intrusion detection system. IEEE Access 2020, 8, 176872–176884. [Google Scholar]
- Vinyals, O.; Blundell, C.; Lillicrap, T.; Kavukcuoglu, K.; Wierstra, D. Matching Networks for One Shot Learning. In Proceedings of the 30th Conference on Neural Information Processing Systems (NIPS), Barcelona, Spain, 5–10 December 2016; pp. 3630–3638. [Google Scholar]
- Xu, Y.; Liu, G.; Hu, Z.; Li, X. Inductive learning and metric learning for network anomaly detection. IEEE Trans. Inf. Forensics Secur. 2019, 14, 2893–2906. [Google Scholar]
- Li, H.; Zhang, T.; Wang, Y.; Gao, S. Attention-based metric learning for network intrusion detection. IEEE Access 2021, 9, 48965–48978. [Google Scholar]
- Dainotti, A.; Pescape, A.; C1affy, K.C. Issues and future directions in traffic classification. IEEE Netw. 2012, 26, 35–40. [Google Scholar] [CrossRef]
- Jing, X.; Yan, Z.; Pedrycz, W. Security data collection and data analytics in the Internet: A survey. IEEE Commun. Surv. Tutor. 2018, 21, 586–618. [Google Scholar] [CrossRef]
- Parsaei, M.; Taheri, R.; Javidan, R. Perusing The Effect of Discretization of Data on Accuracy of Predicting Naïve Bayes Algorithm. J. Curr. Res. Sci. 2016, 1, 457–462. [Google Scholar]
- Devlin, J.; Chang, M.-W.; Lee, K.; Toutanova, K. BERT: Pre-training of Deep Bidirectional Transformers for Language Understanding. In Proceedings of the 2019 Conference of the North American Chapter of the Association for Computational Linguistics: Human Language Technologies, Florence, Italy, 28 July–2 August 2019; Association for Computational Linguistics: Minneapolis, MN, USA, 2019; Volume 1 (Long and Short Papers), pp. 4171–4186. [Google Scholar]
- Wang, W. Research on Network Traffic Classification and Anomaly Detection Methods Based on Deep Learning. Ph.D. Thesis, University of Science and Technology of China, Anhui, China, 2018. [Google Scholar]
- Ba, J.L.; Kiros, J.R.; Hinton, G.E. Layer normalization. arXiv 2016, arXiv:1607.06450. [Google Scholar]
- Hostiadi, D.P.; Atmojo, Y.P.; Huizen, R.R.; Susila, I.M.D.; Pradipta, G.A.; Liandana, I.M. A New Approach Feature Selection for Intrusion Detection System Using Correlation Analysis. In Proceedings of the 2022 4th International Conference on Cybernetics and Intelligent System (ICORIS), Prapat, Indonesia, 8–9 October 2022; pp. 1–6. [Google Scholar] [CrossRef]
- Bhuva, D.; Kumar, S. Securing Space Cognitive Communication with Blockchain. In Proceedings of the 2023 IEEE Cognitive Communications for Aerospace Applications Workshop (CCAAW), Cleveland, OH, USA, 20–22 June 2023; pp. 1–6. [Google Scholar] [CrossRef]
- Bhuva, D.; Kumar, S. A novel continuous authentication method using biometrics for IoT devices. Internet Things 2023, 24, 100927. [Google Scholar] [CrossRef]
- Socher, R.; Chen, D.; Manning, C.D.; Ng, A. Reasoning with neural tensor networks for knowledge base completion. In Proceedings of the Advances in Neural Information Processing Systems, Lake Tahoe, NV, USA, 5–8 December 2013; pp. 926–934. [Google Scholar]
- Shiravi, A.; Shiravi, H.; Tavallaee, M.; Ghorbani, A.A. Toward developing a systematic approach to generate benchmark datasets for intrusion detection. Comput. Secur. 2012, 31, 357–374. [Google Scholar] [CrossRef]
- Sharafaldin, I.; Lashkari, A.H.; Ghorbani, A.A. Toward generating a new intrusion detection dataset and intrusion traffic characterization. In Proceedings of the ICISSP, Funchal, Portugal, 22–24 January 2018; pp. 108–116. [Google Scholar]
- Xu, C.; Shen, J.; Du, X. A method of few-shot network intrusion detection based on meta-learning framework. IEEE Trans. Inf. Forensics Secur. 2020, 15, 3540–3552. [Google Scholar] [CrossRef]
- Geng, R.; Li, B.; Li, Y.; Zhu, X.; Jian, P.; Sun, J. Induction Networks for Few-Shot Text Classification. arXiv 2019, arXiv:1902.10482. [Google Scholar] [CrossRef]











| Hardware and Software Experimental Environment | Detail | 
|---|---|
| CPU | Intel(R) Core(TM) i5-12400 | 
| Video Card | NVIDIA GeForce GTX 4060 8G | 
| CUDA | 11.4.2 | 
| RAM | 16 GB | 
| Operating System | Windows 10 | 
| Programming Languages | Python 3.7 | 
| Software Framework | Pytorch = 1.13.1, Transformers = 4.30.2 | 
| IDE | PyCharm 2023.3.2 | 
| Real Sample | Sample Projections | |
|---|---|---|
| Positive Sample | Negative Sample | |
| Positive sample | TP | FN | 
| Negative sample | FP | TN | 
| Parameter | Value | 
|---|---|
| Number of Conv1d Blocks | 2 | 
| Number of Encoder Units | 4 | 
| Number of Self-Attention Heads | 4 | 
| Batch Size | 128 | 
| Number of Training Iterations | 60 | 
| Learning Rate | |
| Optimizer | Adam | 
| Loss Function | CrossEntropy Loss | 
| Model | Number of Hidden Layers and Units | Dropout | Learning Rate | Batch Size | 
|---|---|---|---|---|
| LSTM | 128 | 0.2 | 128 | |
| BiGRU | 128,128 | 0.2 | 128 | |
| CNN-BiLSTM | CNN: 128@2*1, 256@2*1; 192@2*1, 320@2*1 GLobalMaxpool BiLSTM: 92, 92 | 0.1 | 10 | |
| CNN-BiGRU-Attn | CNN: 128@2*1, 256@2*1; 192@2*1, 320@2*1 GLobalMaxpool BiGRU: 92, 92 Attention | 0.1 | 10 | |
| Transformer | Token Embedding Position Embedding Encoder: 6 Decoder: 6 Attention Head: 4 | 0.1 | 128 | 
| Model | Accuracy | Precision | Recall | F1-Score | 
|---|---|---|---|---|
| LSTM | 94.19% | 91.86% | 95.98% | 0.9837 | 
| BiGRU | 95.06% | 93.12% | 97.04% | 0.9504 | 
| CNN-BiLSTM | 97.91% | 95.16% | 98.76% | 0.9693 | 
| CNN-BiGRU-Attn | 98.73% | 96.27% | 99.18% | 0.9770 | 
| Transformer | 97.47% | 96.82% | 98.86% | 0.9783 | 
| FCN–Transformer | 99.78% | 98.79% | 99.90% | 0.9934 | 
| Model | Accuracy | Precision | Recall | F1-Score | 
|---|---|---|---|---|
| LSTM | 92.59% | 90.14% | 95.28% | 0.9264 | 
| BiGRU | 93.84% | 92.32% | 96.05% | 0.9415 | 
| CNN-BiLSTM | 97.05% | 94.53% | 98.53% | 0.9649 | 
| CNN-BiGRU-Attn | 98.34% | 95.85% | 99.07% | 0.9743 | 
| Transformer | 97.29% | 95.87% | 98.32% | 0.9708 | 
| FCN–Transformer | 99.47% | 98.52% | 99.81% | 0.9916 | 
| Model | Accuracy | Precision | Recall | F1-Score | 
|---|---|---|---|---|
| LSTM | 91.8% | 90.13% | 93.37% | 0.9172 | 
| BiGRU | 92.79% | 90.26% | 94.07% | 0.9213 | 
| CNN-BiLSTM | 95.92% | 93.87% | 96.94% | 0.9538 | 
| CNN-BiGRU-Attn | 98.55% | 95.83% | 98.76% | 0.9727 | 
| Transformer | 96.33% | 94.57% | 96.43% | 0.9549 | 
| FCN–Transformer | 99.32% | 99.03% | 99.16% | 0.9909 | 
| Traffic Category | Precision | Recall | F1-Score | 
|---|---|---|---|
| Benign | 99.85% | 99.54% | 0.997 | 
| DoS Hulk | 99.29% | 99.91% | 0.996 | 
| PortScan | 99.93% | 99.89% | 0.9991 | 
| DDoS | 99.86% | 98.92% | 0.9939 | 
| DoS GoldenEye | 99.12% | 99.41% | 0.9926 | 
| FTP-Patator | 99.93% | 99.68% | 0.995 | 
| SSH-Patator | 99.83% | 98.39% | 0.991 | 
| DoS slowloris | 99.82% | 99.23% | 0.9953 | 
| Dos Slowhttptest | 99.27% | 99.09% | 0.9918 | 
| Bot | 80.72% | 92.9% | 0.8638 | 
| Brute Force | 65.89% | 98.75% | 0.7904 | 
| XSS | 97.94% | 55.88% | 0.7116 | 
| Infiltration | 100.0% | 42.89% | 0.6 | 
| SQL Injection | 100.0% | 40% | 0.5714 | 
| Heartbleed | 100.0% | 33.33% | 0.5 | 
| Model | Training Time | Test Time | 
|---|---|---|
| CNN | 57 min | 1.9 min | 
| LSTM | 76 min | 2.7 min | 
| BiGRU | 71 min | 2.6 min | 
| CNN-BiLSTM | 128 min | 3.5 min | 
| CNN-BiGRU-Attn | 135 min | 3.5 min | 
| FCN–Transformer | 54 min | 1.7 min | 
| Traffic Category | Detection Rate | Recall Rate | F1-Score | 
|---|---|---|---|
| Benign | 93.52% | 98.2% | 0.958 | 
| DoS Hulk | 99.39% | 97.99% | 0.9869 | 
| PortScan | 97.98% | 97.2% | 0.9759 | 
| DDoS | 96.84% | 98% | 0.9742 | 
| DoS GoldenEye | 99.19% | 97.6% | 0.9838 | 
| FTP-Patator | 99.8% | 99.2% | 0.995 | 
| SSH-Patator | 99.2% | 99% | 0.991 | 
| DoS slowloris | 98.79% | 98.2% | 0.985 | 
| Dos Slowhttptest | 96.4% | 96.4% | 0.964 | 
| Bot | 96.18% | 95.8% | 0.9599 | 
| Brute Force | 96.63% | 97.4% | 0.9701 | 
| XSS | 99.8% | 98.4% | 0.9909 | 
| Type of Flow | Detection Rate | Recall Rate | F1-Score | 
|---|---|---|---|
| Benign | 93.18% | 95.6% | 0.9437 | 
| BFSSH | 98.79% | 98% | 0.9839 | 
| Infiltration | 96.39% | 96.2% | 0.963 | 
| HttpDos | 94.5% | 92.8% | 0.9364 | 
| DDoS | 94.81% | 95% | 0.9491 | 
| Type of Flow | Detection Rate | Recall Rate | F1-Score | 
|---|---|---|---|
| Benign | 86.02% | 97.2% | 0.9127 | 
| DoS Hulk | 97.11% | 94.2% | 0.9563 | 
| PortScan | 97.11% | 94.2% | 0.9563 | 
| DDoS | 96.41% | 96.6% | 0.965 | 
| DoS GoldenEye | 97.74% | 95.19% | 0.9645 | 
| FTP-Patator | 98.78% | 97.4% | 0.9809 | 
| SSH-Patator | 98.38% | 97.19% | 0.9778 | 
| DoS slowloris | 95.53% | 98.2% | 0.9684 | 
| Dos Slowhttptest | 95.12% | 93.6% | 0.9435 | 
| Bot | 94.02% | 91.38% | 0.9268 | 
| Brute Force | 90.94% | 96.4% | 0.9359 | 
| XSS | 99.78% | 90.4% | 0.9486 | 
| Data Definitions | Data Types | Training Volume | Test Volume | Code | 
|---|---|---|---|---|
| Known flow | Benign | 35 | 100 | iA | 
| DDoS | 35 | 100 | iB | |
| PortScan | 35 | 100 | iC | |
| DoS Hulk | 35 | 100 | iD | |
| Infiltration | 35 | 100 | iE | |
| Unknown attack | Heartbleed | 0 | 10 | iF | 
| SQL Injection | 0 | 25 | iG | 
| Code | FC-Net | IN-Attention | MFEI-IDS | |||
|---|---|---|---|---|---|---|
| Detection Rate | Recall Rate | Detection Rate | Recall Rate | Detection Rate | Recall Rate | |
| iA | 88.99% | 97% | 91.67% | 99% | 95.24% | 100% | 
| iB | 97.98% | 97% | 98.98% | 97% | 99% | 99% | 
| iC | 90.62% | 87% | 92.93% | 92% | 96% | 96% | 
| iD | 97% | 97% | 98% | 98% | 98.99% | 98.99% | 
| iE | 90% | 90% | 93.94% | 93% | 97.94% | 95% | 
| iF&iG | 93.55% | 82.86% | 100% | 88.57% | 100% | 94.29% | 
| Disclaimer/Publisher’s Note: The statements, opinions and data contained in all publications are solely those of the individual author(s) and contributor(s) and not of MDPI and/or the editor(s). MDPI and/or the editor(s) disclaim responsibility for any injury to people or property resulting from any ideas, methods, instructions or products referred to in the content. | 
© 2025 by the authors. Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https://creativecommons.org/licenses/by/4.0/).
Share and Cite
Mao, J.; Yang, X.; Hu, B.; Lu, Y.; Yin, G. Intrusion Detection System Based on Multi-Level Feature Extraction and Inductive Network. Electronics 2025, 14, 189. https://doi.org/10.3390/electronics14010189
Mao J, Yang X, Hu B, Lu Y, Yin G. Intrusion Detection System Based on Multi-Level Feature Extraction and Inductive Network. Electronics. 2025; 14(1):189. https://doi.org/10.3390/electronics14010189
Chicago/Turabian StyleMao, Junyi, Xiaoyu Yang, Bo Hu, Yizhen Lu, and Guangqiang Yin. 2025. "Intrusion Detection System Based on Multi-Level Feature Extraction and Inductive Network" Electronics 14, no. 1: 189. https://doi.org/10.3390/electronics14010189
APA StyleMao, J., Yang, X., Hu, B., Lu, Y., & Yin, G. (2025). Intrusion Detection System Based on Multi-Level Feature Extraction and Inductive Network. Electronics, 14(1), 189. https://doi.org/10.3390/electronics14010189
 
        

 
       