Loughborough University
Leicestershire, UK
LE11 3TU
+44 (0)1509 263171
Loughborough University

Loughborough University Institutional Repository

Please use this identifier to cite or link to this item: https://dspace.lboro.ac.uk/2134/20716

Title: Improving intrusion detection by the automated generation of detection rules
Authors: Almutairi, Abdulrazaq Z.
Parish, David J.
Issue Date: 2014
Publisher: © Infonomics Society
Citation: ALMUTAIRI, A.Z. and PARISH, D.J., 2014. Improving intrusion detection by the automated generation of detection rules. International Journal of Intelligent Computing Research, 5 (4), pp. 481-488.
Abstract: Rule Based Detection Systems have been successful in preventing attacks on network resources, but suffer a problem in that they are not adaptable in cases where new attacks are made i.e. they need human intervention for investigating new attacks. This paper proposes the creation of a predictive intrusion detection model that is based on usage of classification techniques such as decision tree, Naïve Bayes, neural network, and fuzzy logic to generate new rules. The proposed model in this paper consists of two stages. The first stage uses either a Decision tree (J48 based on C4.5) or Naïve Bayes classifier based on the results obtained in experiments while the second stage is based on a hybrid module that uses both a neural network (MLP) and fuzzy logic. Training and evaluation phases used randomly selected connections in a subset of the KDD’99 intrusion detection data set. A selected set of features has been extracted from those connections using a subset evaluation algorithm. This paper shows how the proposed system has been trained detailing parameters that affect the training process; it also details results obtained in the evaluation process including detection and false positive rates.
Description: This paper is closed access.
Version: Published
URI: https://dspace.lboro.ac.uk/2134/20716
Publisher Link: http://infonomics-society.ie/wp-content/uploads/ijicr/published-papers/volume-5-2014/Improving-Intrusion-Detection-by-the-Automated-Generation-of-Detection-Rules.pdf
ISSN: 2042-4655
Appears in Collections:Closed Access (Mechanical, Electrical and Manufacturing Engineering)

Files associated with this item:

File Description SizeFormat
Improving Intrusion Detection by the Automated Generation of Detection Rules.pdfPublished version1.06 MBAdobe PDFView/Open


SFX Query

Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.