Related Experiment Videos
X-THREAT framework for adaptive and explainable deep learning-based minority-class and zero-day cyber threat
Samina Naz Qaisarani1, Sahar K Badri2, Asad Khattak3
1Gomal Research Institute of Computing (GRIC), Faculty of Computing, Gomal University, D.I.Khan (KP), Pakistan.
Abstract:
The dynamic nature of cyber threats-particularly minority-class and zero-day attacks-poses significant challenges to existing intrusion detection systems (IDS), which often lack adaptability, interpretability, and robustness. This paper presents X-THREAT, an adaptive and explainable deep learning framework designed to improve detection of rare and previously unseen cyber threats. Unlike prior approaches that treat detection, augmentation, and explainability separately, X-THREAT integrates these components within a unified pipeline. A hybrid VAE-GAN module enhances minority-class representation during training, while a CNN-BiLSTM-attention model performs threat detection, and a context-aware SHAP mechanism provides interpretable insights into model decisions. Experimental results on three benchmark datasets-CICIDS2017, UNSW-NB15, and ToN-IoT-show that X-THREAT consistently outperforms representative deep learning baselines. The model achieves 96.3% accuracy and 95.5% F1-score on CICIDS2017, 94.1% accuracy and 92.5% F1-score on UNSW-NB15, and 93.2% accuracy and 91.5% F1-score on ToN-IoT, along with improved minority-class recall and reduced false positive rates. AUC-ROC values of 0.97, 0.95, and 0.94 further demonstrate strong discriminative capability. Zero-day detection capability is evaluated using a leave-one-attack-class-out protocol, and interpretability is assessed through fidelity analysis and comparison with static SHAP and LIME methods. Results indicate consistent performance across independently evaluated datasets, suggesting potential for generalization. From a deployment perspective, computationally intensive components are restricted to offline training, while inference relies on the detection model with optional explanation. However, latency, resource usage, and edge deployment feasibility were not explicitly benchmarked and remain important directions for future work. Overall, X-THREAT provides a robust and interpretable framework for modern intrusion detection, with improved performance on minority-class and zero-day threat scenarios.
Related Concept Videos
Masking and Demasking Agents
There are many masking agents, such as cyanide, fluoride, triethanolamine, thiourea, and 2,3-bis(sulfanyl)propan-1-ol (formerly 2,3-dimercapto-1-propanol), with the masking agent chosen based on the metal...
Detection of Black Holes
Their closest cousins are neutron stars, which are composed almost entirely of neutrons packed against each other, making them extremely dense. A neutron star has the same mass as the Sun but its diameter is only a few kilometers. Therefore, the escape velocity from their surface is close to the speed of light.
Not until the 1960s, when the first neutron...