On the combination of genetic fuzzy systems and pairwise learning for improving detection rates on Intrusion Detection Systems

被引:149
|
作者
Elhag, Salma [1 ]
Fernandez, Alberto [2 ]
Bawakid, Abdullah [3 ]
Alshomrani, Saleh [3 ]
Herrera, Francisco [3 ,4 ]
机构
[1] King Abdulaziz Univ, Dept Informat Syst, Jeddah 21413, Saudi Arabia
[2] Univ Jaen, Dept Comp Sci, Jaen, Spain
[3] King Abdulaziz Univ, Fac Comp & Informat Technol North Jeddah, Jeddah 21413, Saudi Arabia
[4] Univ Granada, CITIC UGR Res Ctr Informat & Commun Technol, Dept Comp Sci & Artificial Intelligence, Granada, Spain
关键词
Intrusion Detection Systems; Genetic Fuzzy Systems; Pairwise learning; One-vs-One; Misuse detection; MULTICLASS PROBLEMS; CLASSIFICATION; ALGORITHMS; TAXONOMY; PROPOSAL; DESIGN; MODELS; TRENDS; SET;
D O I
10.1016/j.eswa.2014.08.002
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Security policies of information systems and networks are designed for maintaining the integrity of both the confidentiality and availability of the data for their trusted users. However, a number of malicious users analyze the vulnerabilities of these systems in order to gain unauthorized access or to compromise the quality of service. For this reason, Intrusion Detection Systems have been designed in order to monitor the system and trigger alerts whenever they found a suspicious event. Optimal Intrusion Detection Systems are those that achieve a high attack detection rate together with a small number of false alarms. However, cyber attacks present many different characteristics which make them hard to be properly identified by simple statistical methods. According to this fact, Data Mining techniques, and especially those based in Computational Intelligence, have been used for implementing robust and accuracy Intrusion Detection Systems. In this paper; we consider the use of Genetic Fuzzy Systems within a pairwise learning framework for the development of such a system. The advantages of using this approach are twofold: first, the use of fuzzy sets, and especially linguistic labels, enables a smoother borderline between the concepts, and allows a higher interpretability of the rule set. Second, the divide-and-conquer learning scheme, in which we contrast all possible pair of classes with aims, improves the precision for the rare attack events, as it obtains a better separability between a "normal activity" and the different attack types. The goodness of our methodology is supported by means of a complete experimental study, in which we contrast the quality of our results versus the state-of-the-art of Genetic Fuzzy Systems for intrusion detection and the C4.5 decision tree. (C) 2014 Elsevier Ltd. All rights reserved.
引用
收藏
页码:193 / 202
页数:10
相关论文
共 50 条
  • [31] An intelligent infrastructure strategy to improving the performance and detection capability of intrusion detection systems
    Hooper, Emmanuel
    2006 SECURECOMM AND WORKSHOPS, 2006, : 186 - 200
  • [32] An intelligent infrastructure strategy to improving the performance and detection capability of intrusion detection systems
    Hooper, Emmanuel
    2006 SECURECOMM AND WORKSHOPS, 2006, : 355 - 364
  • [33] Intrusion detection using a hybridization of evolutionary fuzzy systems and artificial immune systems
    Abadeh, M. Saniee
    Habibi, J.
    Daneshi, M.
    Jalali, M.
    Khezrzadeh, M.
    2007 IEEE CONGRESS ON EVOLUTIONARY COMPUTATION, VOLS 1-10, PROCEEDINGS, 2007, : 3547 - 3553
  • [34] Learning Classifier Systems for Adaptive Learning of Intrusion Detection System
    Lee, Chang Seok
    Cho, Sung Bae
    INTERNATIONAL JOINT CONFERENCE SOCO'17- CISIS'17-ICEUTE'17 PROCEEDINGS, 2018, 649 : 557 - 566
  • [35] A Review of Federated Learning Applications in Intrusion Detection Systems
    Belenguer, Aitor
    Pascual, Jose A.
    Navaridas, Javier
    COMPUTER NETWORKS, 2025, 258
  • [36] An Explainable Machine Learning Framework for Intrusion Detection Systems
    Wang, Maonan
    Zheng, Kangfeng
    Yang, Yanqing
    Wang, Xiujuan
    IEEE ACCESS, 2020, 8 : 73127 - 73141
  • [37] Personalized Federated Learning for Automotive Intrusion Detection Systems
    Shibly, Kabid Hassan
    Hossain, Md Delwar
    Inoue, Hiroyuki
    Taenaka, Yuzo
    Kadobayashi, Youki
    2022 IEEE FUTURE NETWORKS WORLD FORUM, FNWF, 2022, : 544 - 549
  • [38] Combined Deep Learning Approaches for Intrusion Detection Systems
    Alshattnawi, Sawsan
    Alshboul, Hadeel Rida
    International Journal of Interactive Mobile Technologies, 2024, 18 (19) : 144 - 155
  • [39] A micro Reinforcement Learning architecture for Intrusion Detection Systems
    Darabi, Boshra
    Bag-Mohammadi, Mozafar
    Karami, Mojtaba
    PATTERN RECOGNITION LETTERS, 2024, 185 : 81 - 86
  • [40] Adversarial machine learning in Network Intrusion Detection Systems
    Alhajjar, Elie
    Maxwell, Paul
    Bastian, Nathaniel
    EXPERT SYSTEMS WITH APPLICATIONS, 2021, 186