On the combination of genetic fuzzy systems and pairwise learning for improving detection rates on Intrusion Detection Systems

被引:149
|
作者
Elhag, Salma [1 ]
Fernandez, Alberto [2 ]
Bawakid, Abdullah [3 ]
Alshomrani, Saleh [3 ]
Herrera, Francisco [3 ,4 ]
机构
[1] King Abdulaziz Univ, Dept Informat Syst, Jeddah 21413, Saudi Arabia
[2] Univ Jaen, Dept Comp Sci, Jaen, Spain
[3] King Abdulaziz Univ, Fac Comp & Informat Technol North Jeddah, Jeddah 21413, Saudi Arabia
[4] Univ Granada, CITIC UGR Res Ctr Informat & Commun Technol, Dept Comp Sci & Artificial Intelligence, Granada, Spain
关键词
Intrusion Detection Systems; Genetic Fuzzy Systems; Pairwise learning; One-vs-One; Misuse detection; MULTICLASS PROBLEMS; CLASSIFICATION; ALGORITHMS; TAXONOMY; PROPOSAL; DESIGN; MODELS; TRENDS; SET;
D O I
10.1016/j.eswa.2014.08.002
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Security policies of information systems and networks are designed for maintaining the integrity of both the confidentiality and availability of the data for their trusted users. However, a number of malicious users analyze the vulnerabilities of these systems in order to gain unauthorized access or to compromise the quality of service. For this reason, Intrusion Detection Systems have been designed in order to monitor the system and trigger alerts whenever they found a suspicious event. Optimal Intrusion Detection Systems are those that achieve a high attack detection rate together with a small number of false alarms. However, cyber attacks present many different characteristics which make them hard to be properly identified by simple statistical methods. According to this fact, Data Mining techniques, and especially those based in Computational Intelligence, have been used for implementing robust and accuracy Intrusion Detection Systems. In this paper; we consider the use of Genetic Fuzzy Systems within a pairwise learning framework for the development of such a system. The advantages of using this approach are twofold: first, the use of fuzzy sets, and especially linguistic labels, enables a smoother borderline between the concepts, and allows a higher interpretability of the rule set. Second, the divide-and-conquer learning scheme, in which we contrast all possible pair of classes with aims, improves the precision for the rare attack events, as it obtains a better separability between a "normal activity" and the different attack types. The goodness of our methodology is supported by means of a complete experimental study, in which we contrast the quality of our results versus the state-of-the-art of Genetic Fuzzy Systems for intrusion detection and the C4.5 decision tree. (C) 2014 Elsevier Ltd. All rights reserved.
引用
收藏
页码:193 / 202
页数:10
相关论文
共 50 条
  • [1] Improving the performance of the intrusion detection systems by the machine learning explainability
    Quang-Vinh Dang
    INTERNATIONAL JOURNAL OF WEB INFORMATION SYSTEMS, 2021, 17 (05) : 537 - 555
  • [2] Design and analysis of genetic fuzzy systems for intrusion detection in computer networks
    Abadeh, Mohammad Saniee
    Mohamadi, Hamid
    Habibi, Jafar
    EXPERT SYSTEMS WITH APPLICATIONS, 2011, 38 (06) : 7067 - 7075
  • [3] Genetic-Fuzzy Association Rules for Network Intrusion Detection Systems
    Su, Ming-Yang
    Lin, Chun-Yuen
    Chien, Sheng-Wei
    Hsu, Han-Chung
    IEEE INTERNATIONAL CONFERENCE ON FUZZY SYSTEMS (FUZZ 2011), 2011, : 2046 - 2052
  • [4] Multiple Negative Selection Algorithm: Improving Detection Error Rates in IoT Intrusion Detection Systems
    Pamukov, Marin E.
    Poulkov, Vladimir K.
    PROCEEDINGS OF THE 2017 9TH IEEE INTERNATIONAL CONFERENCE ON INTELLIGENT DATA ACQUISITION AND ADVANCED COMPUTING SYSTEMS: TECHNOLOGY AND APPLICATIONS (IDAACS), VOL 1, 2017, : 543 - 547
  • [5] Active Learning for Intrusion Detection Systems
    Quang-Vinh Dang
    2020 RIVF INTERNATIONAL CONFERENCE ON COMPUTING & COMMUNICATION TECHNOLOGIES (RIVF 2020), 2020, : 382 - 384
  • [6] Deep Learning in Intrusion Detection Systems
    Karatas, Gozde
    Demir, Onder
    Sahingoz, Ozgur Koray
    2018 INTERNATIONAL CONGRESS ON BIG DATA, DEEP LEARNING AND FIGHTING CYBER TERRORISM (IBIGDELFT), 2018, : 113 - 116
  • [7] A machine learning approach for improving the performance of network intrusion detection systems
    Azizan A.H.
    Mostafa S.A.
    Mustapha A.
    Mohd Foozy C.F.
    Abd Wahab M.H.
    Mohammed M.A.
    Khalaf B.A.
    Annals of Emerging Technologies in Computing, 2021, 5 (Special issue 5) : 201 - 208
  • [8] Fuzzy Based Intrusion Detection Systems in MANET
    Balan, Vishnu E.
    Priyan, M. K.
    Gokulnath, C.
    Devi, Usha G.
    BIG DATA, CLOUD AND COMPUTING CHALLENGES, 2015, 50 : 109 - 114
  • [9] Fuzzy-Based Intrusion Detection Systems
    Cisar, Sanja Maravic
    Cisar, Petar
    Pinter, Robert
    SECURITY-RELATED ADVANCED TECHNOLOGIES IN CRITICAL INFRASTRUCTURE PROTECTION: THEORETICAL AND PRACTICAL APPROACH, 2022, : 205 - 215
  • [10] Fuzzy ESVDF approach for Intrusion Detection Systems
    Zaman, Safaa
    Karray, Fakhri
    2009 INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS, 2009, : 539 - 545