Adaptive False Alarm Filter Using Machine Learning in Intrusion Detection

被引:0
|
作者
Meng, Yuxin [1 ]
Kwok, Lam-for [1 ]
机构
[1] City Univ Hong Kong, Dept Comp Sci, Hong Kong, Hong Kong, Peoples R China
关键词
Intrusion detection; False alarm; Machine learning; Adaptive system;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Intrusion detection systems (IDSs) have been widely deployed in organizations nowadays as the last defense for the network security. However, one of the big problems of these systems is that a large amount of alarms especially false alarms will be produced during the detection process, which greatly aggravates the analysis workload and reduces the effectiveness of detection. To mitigate this problem, we advocate that the construction of a false alarm filter by utilizing machine learning schemes is an effective solution. In this paper, we propose an adaptive false alarm filter aiming to filter out false alarms with the best machine learning algorithm based on distinct network contexts. In particular, we first compare with six specific machine learning schemes to illustrate their unstable performance. Then, we demonstrate the architecture of our adaptive false alarm filter. The evaluation results show that our approach is effective and encouraging in real scenarios.
引用
收藏
页码:573 / 584
页数:12
相关论文
共 50 条
  • [41] Enhancing Intrusion Detection System Using Machine Learning and Deep Learning
    Madhusudhan, R.
    Thakur, Shubham Kumar
    Pravisha, P.
    ADVANCED INFORMATION NETWORKING AND APPLICATIONS, VOL 3, AINA 2024, 2024, 201 : 326 - 337
  • [42] IDENTIFYING FALSE ALARM FOR NETWORK INTRUSION DETECTION SYSTEM USING HYBRID DATA MINING AND DECISION TREE
    Anuar, Nor Badrul
    Sallehudin, Hasimi
    Gani, Abdullah
    Zakari, Omar
    MALAYSIAN JOURNAL OF COMPUTER SCIENCE, 2008, 21 (02) : 101 - 115
  • [43] False alarm classification model for network-based intrusion detection system
    Shin, MS
    Kim, EH
    Ryu, KH
    INTELLIGENT DATA ENGINEERING AND AUTOMATED LEARNING IDEAL 2004, PROCEEDINGS, 2004, 3177 : 259 - 265
  • [45] Signature adaptive mine detection at a constant false alarm rate
    Crosby, F
    Riley, S
    AUTOMATIC TARGET RECOGNITION XI, 2001, 4379 : 401 - 411
  • [46] EVALUATION OF THE FALSE ALARM AND DETECTION PROBABILITIES IN A SPREAD SPECTRUM SYSTEM USING A MATCHED-FILTER
    ANGELOPOULOS, G
    KATSAROS, A
    INTERNATIONAL JOURNAL OF ELECTRONICS, 1992, 73 (03) : 523 - 538
  • [47] Security intrusion detection using quantum machine learning techniques
    Kalinin, Maxim
    Krundyshev, Vasiliy
    JOURNAL OF COMPUTER VIROLOGY AND HACKING TECHNIQUES, 2023, 19 (01) : 125 - 136
  • [48] Analysis on intrusion detection system using machine learning techniques
    Seraphim B.I.
    Poovammal E.
    Lecture Notes on Data Engineering and Communications Technologies, 2021, 66 : 423 - 441
  • [49] Classification of Intrusion Detection Dataset using machine learning Approaches
    Subramanyam, Doodipalli
    PROCEEDINGS OF THE 2018 INTERNATIONAL CONFERENCE ON COMPUTATIONAL TECHNIQUES, ELECTRONICS AND MECHANICAL SYSTEMS (CTEMS), 2018, : 280 - 283
  • [50] Security intrusion detection using quantum machine learning techniques
    Maxim Kalinin
    Vasiliy Krundyshev
    Journal of Computer Virology and Hacking Techniques, 2023, 19 : 125 - 136