• DocumentCode
    3429985
  • Title

    A New Data-Mining Based Approach for Network Intrusion Detection

  • Author

    Dartigue, Christine ; Jang, Hyun Ik ; Zeng, Wenjun

  • Author_Institution
    Comput. Sci. Dept., Univ. of Missouri-Columbia, Columbia, MO
  • fYear
    2009
  • fDate
    11-13 May 2009
  • Firstpage
    372
  • Lastpage
    377
  • Abstract
    Nowadays, as information systems are more open to the Internet, the importance of secure networks is tremendously increased. New intelligent intrusion detection systems (IDSs) which are based on sophisticated algorithms rather than current signature-base detections are in demand. In this paper, we propose a new data-mining based technique for intrusion detection using an ensemble of binary classifiers with feature selection and multiboosting simultaneously. Our model employs feature selection so that the binary classifier for each type of attack can be more accurate, which improves the detection of attacks that occur less frequently in the training data. Based on the accurate binary classifiers, our model applies a new ensemble approach which aggregates each binary classifierpsilas decisions for the same input and decides which class is most suitable for a given input. During this process, the potential bias of certain binary classifier could be alleviated by other binary classifierspsila decision. Our model also makes use of multiboosting for reducing both variance and bias. The experimental results show that our approach provides better performance in terms of accuracy and cost than the winner entry of the dasiaKnowledge Development and Data miningpsila (KDD) psila99 cup challenge. Future works will extend our analysis to a new dasiaProtected Repository for the Defense of Infrastructure against Cyber Threatspsila (PREDICT) dataset as well as real network data.
  • Keywords
    Internet; data mining; security of data; Internet; binary classifiers; data-mining based approach; feature selection; information systems; intelligent intrusion detection systems; network intrusion detection; secure networks; signature-base detections; Aggregates; Classification algorithms; Communication networks; Computer science; Data mining; IP networks; Information systems; Intrusion detection; Training data; Web and internet services; Data Mining; Ensemble Approach; Feature Selection; Intrusion Detection; Multiboosting;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Communication Networks and Services Research Conference, 2009. CNSR '09. Seventh Annual
  • Conference_Location
    Moncton, NB
  • Print_ISBN
    978-1-4244-4155-6
  • Electronic_ISBN
    978-0-7695-3649-1
  • Type

    conf

  • DOI
    10.1109/CNSR.2009.64
  • Filename
    4939152