A Neuro-genetic Based Short-term Forecasting Framework for Network Intrusion Prediction System

来源 :International Journal of Automation & Computing | 被引量 : 0次 | 上传用户:guojade_2009
下载到本地 , 更方便阅读
声明 : 本文档内容版权归属内容提供方 , 如果您对本文有版权争议 , 可与客服联系进行内容授权或下架
论文部分内容阅读
Information systems are one of the most rapidly changing and vulnerable systems, where security is a major issue. The number of security-breaking attempts originating inside organizations is increasing steadily. Attacks made in this way, usually done by “authorized” users of the system, cannot be immediately traced. Because the idea of filtering the traffic at the entrance door, by using firewalls and the like, is not completely successful, the use of intrusion detection systems should be considered to increase the defense capacity of an information system. An intrusion detection system (IDS) is usually working in a dynamically changing environment, which forces continuous tuning of the intrusion detection model, in order to maintain sufficient performance. The manual tuning process required by current IDS depends on the system operators in working out the tuning solution and in integrating it into the detection model. Furthermore, an extensive effort is required to tackle the newly evolving attacks and a deep study is necessary to categorize it into the respective classes. To reduce this dependence, an automatically evolving anomaly IDS using neuro-genetic algorithm is presented. The proposed system automatically tunes the detection model on the fly according to the feedback provided by the system operator when false predictions are encountered. The system has been evaluated using the Knowledge Discovery in Databases Conference (KDD 2009) intrusion detection dataset. Genetic paradigm is employed to choose the predominant features, which reveal the occurrence of intrusions. The neuro-genetic IDS (NGIDS) involves calculation of weightage value for each of the categorical attributes so that data of uniform representation can be processed by the neuro-genetic algorithm. In this system unauthorized invasion of a user are identified and newer types of attacks are sensed and classified respectively by the neuro-genetic algorithm. The experimental results obtained in this work show that the system achieves improvement in terms of misclassification cost when compared with conventional IDS. The results of the experiments show that this system can be deployed based on a real network or database environment for effective prediction of both normal attacks and new attacks. Information systems are one of the most rapidly changing and vulnerable systems, where security is a major issue. The number of security-breaking attempts originating inside organizations is increasing steadily. Attacks made in this way, usually done by “authorized ” users of the system, can not be immediately traced. Because the idea of ​​filtering the traffic at the entrance door, by using firewalls and the like, is not completely successful, the use of intrusion detection systems should be considered to increase the defense capacity of an information system . An intrusion detection system (IDS) is usually working in a dynamically changing environment, which forces continuous tuning of the intrusion detection model, in order to maintain sufficient performance. The manual tuning process required by current IDS depends on the system operators in working out the tuning solution and in integrating it into the detection model. furthermore, an extensive effort is required to tackle the newly evolving attacks and a deep study is necessary to categorize it into the respective classes. To reduce this dependence, an automatically evolving anomaly IDS using neuro-genetic algorithm is presented. The proposed system automatically tunes the detection model on the fly according to the provided The system has been evaluated using the Knowledge Discovery in Databases Conference (KDD 2009) intrusion detection dataset. Genetic paradigm is employed to choose the predominant features, which reveal the occurrence of intrusions. The neuro- genetic IDS (NGIDS) involves calculation of weightage value for each of the categorical attributes so that data of uniform representation can be processed by the neuro-genetic algorithm. In this system unauthorized invasion of a user are identified and newer types of attacks are sensed and classified respectively by the neuro-genetic algorithm. The experimental results obtained in this work show that the system achieves improvement in terms of misclassification cost when compared with conventional IDS. The results of the experiments show that this system can be deployed based on a real network or database environment for effective prediction of both normal attacks and new attacks.
其他文献
介绍PBL的概念、特点和教学步骤,并阐述护理教学模式的转变过程,最后分析应用PBL教学法与发展护理教学模式二者之间存在的互相促进关系.
护理行业是具有高度责任,高风险的服务行业,随着病人维权意识的增强和《医疗事故处理条例》的颁布实施,护理人员在工作中面临的责任和风险逐渐增多,如果风险隐患没有被认识并
滑膜软骨瘤病是一种关节滑膜自限性良性关节疾病,后期会给患者带来很大痛苦.早期、准确诊断,是获得良好疗效的关键.影像学诊断是早期、准确诊断滑膜软骨瘤病最常用最有效的方
采用转相法制备30%氟铃脲·三唑磷微乳剂,简述了其制备理论和制备方法,对配方组分进行了筛选和优化实验,确定了最佳配方组成:氟铃脲2%,三唑磷28%,二甲基甲酰胺+N-甲基吡咯烷
对生物法失活豆乳中的抗营养因子进行了研究.发芽12h后加工的熟豆乳中,胰蛋白酶抑制剂活性降低了83.2%.保加利亚乳杆菌(Lb)、米黑毛霉(M.M)和米根霉(R.O)发酵能有效失活豆乳
Although computer capabilities have been improved significantly, a large-scale virtual reality (VR) system demands much more in terms of memory and computation
真空浸渍技术对果蔬进行处理的最佳工艺条件需进行大量实验才能获得,可视化真空浸渍实验装置的研制即可解决实验室没有专门实验设备的问题.在理论计算的基础上,对实验装置的
目的了解青海省农村牧区水源类型、取水方式、饮用水卫生现状,为制定饮用水卫生安全发展规划提供科学依据。方法于2006年丰水期,采用《农村牧区饮用水调查表》对监测点进行调
[目的]筛选血管内皮生长因子受体(VEGRF)基因特异性小干扰RNA(Small Interference RNA,siRNA),为肿瘤等疾病的基因治疗寻找一种新途径. [方法]以高表达 VEGFR1的人脐静脉血管
根据实际生产经验和国家相关规定,提出了变电站二次设备接地设计所要遵循的原则,分析了广东某500kV变电站的雷击事故产生的原因,对其二次设备等电位接地铜排的敷设方式进行讨