An integrated approach to network intrusion detection with block clustering analysis, Generalised logistic regression and linear discriminant analysis

被引:0
|
作者
Ma Z. [1 ]
机构
[1] Department of Computer Science, University of Idaho, Moscow, ID
关键词
Block clustering analysis; Generalised logistic regression; GLR; ICA; Independent component analysis; Intrusion detection; LDA; Linear discriminant analysis; Multidimensional scaling;
D O I
10.1504/IJICS.2010.031860
中图分类号
学科分类号
摘要
The objective of this study is to develop an integrated modelling approach to network intrusion detection with three multivariate statistical methods: Block Clustering (BC) Analysis, Generalised Logistic Regression (GLR) and Linear Discriminant Analysis (LDA). A pipeline processing strategy with BC followed by either GLR or LDA is attempted in order to automate the intrusion detection process. The preliminary testing results show that the integration of BC and LDA is very promising, but that of BC and GLR is uncertain. Essentially, BC offers a classification algorithm, and LDA or GLR further assesses the results pipelined from BC and enables a judgement to be made (e.g., intrusive, suspicious, or normal). Although clustering techniques have been widely utilised for intrusion detection from the very beginning of the field, to the best of our knowledge, BC has not been applied in intrusion detection or computer science previously. The two-way joining strategy of BC in cluster detection is especially desirable for intrusion detection since information from both data cases and variables (features) are synthesised to form block clusters, while other clustering methods often only consider information from either data cases or variables. The paper also discusses the justification for our choice of the three statistical methods. The choice is largely determined by two of the most obvious properties of intrusion audit data: most variables in intrusion detection data are categorical, rather than continuous; the probability distributions of these variables usually are not normally distributed. In perspective, we suggest that the integration of BC with Independent Component Analysis (ICA) (which has been successfully utilised in speech recognition, brain imaging and intrusion detection in combination with other statistical methods) is likely to offer a mutually complementary approach. We further suggest that the integration of the approach developed in this paper with Multidimensional Scaling (MDS) may produce an effective technology for building visualised real-time intrusion detection systems. Copyright © 2010 Inderscience Enterprises Ltd.
引用
收藏
页码:76 / 97
页数:21
相关论文
共 50 条
  • [41] Estimating the causes of traffic accidents using logistic regression and discriminant analysis
    Karacasu, Murat
    Ergul, Baris
    Yavuz, Arzu Altin
    INTERNATIONAL JOURNAL OF INJURY CONTROL AND SAFETY PROMOTION, 2014, 21 (04) : 305 - 312
  • [42] On the Equivalence of Linear Discriminant Analysis and Least Squares Regression
    Nie, Feiping
    Chen, Hong
    Xiang, Shiming
    Zhang, Changshui
    Yan, Shuicheng
    Li, Xuelong
    IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2024, 35 (04) : 5710 - 5720
  • [43] Comparison Logistic Regression and Discriminant Analysis in classification groups for Breast Cancer
    Kitbumrungrat, Krieng
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2012, 12 (05): : 111 - 115
  • [44] DISCRIMINANT ANALYSIS AND LOGISTIC REGRESSION IN PREDICTING BUSINESS FAILURE: A COMPARATIVE STUDY
    Garcia-Gallego, Ana
    Mures-Quintana, Maria-Jesus
    Vallejo-Pascual, M. Eva
    5TH ANNUAL EUROMED CONFERENCE OF THE EUROMED ACADEMY OF BUSINESS: BUILDING NEW BUSINESS MODELS FOR SUCCESS THROUGH COMPETITIVENESS AND RESPONSIBILITY, 2013, : 1759 - 1762
  • [45] Applications of block linear discriminant analysis for face recognition
    Chang, Chuan-Yu
    Chang, Chuan-Wang
    Hsieh, Ching-Yu
    Journal of Information Hiding and Multimedia Signal Processing, 2011, 2 (03): : 259 - 269
  • [46] Development of Two Empirical Correlations for Tunnel Squeezing Prediction Using Binary Logistic Regression and Linear Discriminant Analysis
    Ghasemi, Ebrahim
    Gholizadeh, Hasan
    GEOTECHNICAL AND GEOLOGICAL ENGINEERING, 2019, 37 (04) : 3435 - 3446
  • [47] Parametric classification with soft labels using the evidential EM algorithm: linear discriminant analysis versus logistic regression
    Quost, Benjamin
    Denoeux, Thierry
    Li, Shoumei
    ADVANCES IN DATA ANALYSIS AND CLASSIFICATION, 2017, 11 (04) : 659 - 690
  • [48] Parametric classification with soft labels using the evidential EM algorithm: linear discriminant analysis versus logistic regression
    Benjamin Quost
    Thierry Denœux
    Shoumei Li
    Advances in Data Analysis and Classification, 2017, 11 : 659 - 690
  • [49] Linear discriminant analysis in network traffic modelling
    Zhang, BY
    Sun, YM
    Bian, YL
    Zhang, HK
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2006, 19 (01) : 53 - 65
  • [50] Statistical sex determination from craniometrics: Comparison of linear discriminant analysis, logistic regression, and support vector machines
    Santos, Frederic
    Guyomarc'h, Pierre
    Bruzek, Jaroslav
    FORENSIC SCIENCE INTERNATIONAL, 2014, 245 : 204.e1 - 204.e8