A two-stage hybrid classification technique for network intrusion detection system

被引:32
|
作者
Hussain, Jamal [1 ]
Lalmuanawma, Samuel [1 ,2 ]
Chhakchhuak, Lalrinfela
机构
[1] Mizoram Univ, Math & Comp Sci Dept, Mizoram 796004, Tanhril, India
[2] Uivers York, Dept Comp, York YO10 5DD, N Yorkshire, England
关键词
Intrusion Detection Systems; Support Vector Machine; Artificial Neural Network; Machine Learning; NSL-KDD; ANOMALY DETECTION;
D O I
10.1080/18756891.2016.1237186
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Conventional Network intrusion detection system (NIDS) mostly uses individual classification techniques, such system fails to provide the best possible attack detection rate. In this paper, we propose a new two-stage hybrid classification method using Support Vector Machine (SVM) as anomaly detection in the first stage, and Artificial Neural Network (ANN) as misuse detection in the second. The key idea is to combine the advantages of each technique to ameliorate classification accuracy along with a low probability of false positive. The first stage (Anomaly) detects abnormal activities that could be an intrusion. The second stage (Misuse) further analyze if there is a known attack and classifies the type of attack into four classes namely, Denial of Service (DoS), Remote to Local (R2L), User to Root (U2R) and Probe. Simulation results demonstrate that the proposed algorithm outperforms conventional model including individual classification of SVM and ANN algorithm. The empirical results demonstrate that the proposed system has a reliable degree of detecting anomaly activity over the network data. Simulation results of both stages are based on NSL-KDD datasets which is an enhanced version of KDD99 intrusion dataset.
引用
收藏
页码:863 / 875
页数:13
相关论文
共 50 条
  • [1] A two-stage hybrid classification technique for network intrusion detection system
    Jamal Hussain
    Samuel Lalmuanawma
    Lalrinfela Chhakchhuak
    International Journal of Computational Intelligence Systems, 2016, 9 : 863 - 875
  • [2] A two-stage hybrid model for intrusion detection
    Krishnamoorthi
    Reddy, N. V. Subba
    Acharya, U. Dinesh
    2006 INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING AND COMMUNICATIONS, VOLS 1 AND 2, 2007, : 158 - 160
  • [3] An Efficient Two-Stage Network Intrusion Detection System in the Internet of Things
    Zhang, Hongpo
    Zhang, Bo
    Huang, Lulu
    Zhang, Zhaozhe
    Huang, Haizhaoyang
    INFORMATION, 2023, 14 (02)
  • [4] A Two-Stage Classifier Approach for Network Intrusion Detection
    Zong, Wei
    Chow, Yang-Wai
    Susilo, Willy
    INFORMATION SECURITY PRACTICE AND EXPERIENCE (ISPEC 2018), 2018, 11125 : 329 - 340
  • [5] High Performance Network Intrusion Detection System Using Two-Stage LSTM and Incremental Created Hybrid Features
    Han, Jonghoo
    Pak, Wooguil
    ELECTRONICS, 2023, 12 (04)
  • [6] A Two-Stage IoT Window Intrusion Detection System
    Mathuseck, Lars
    Goetz, Johann
    Morold, Michel
    David, Klaus
    2023 IEEE 9TH WORLD FORUM ON INTERNET OF THINGS, WF-IOT, 2023,
  • [7] Detection of Database Intrusion Using a Two-Stage Fuzzy System
    Panigrahi, Suvasini
    Sural, Shamik
    INFORMATION SECURITY, PROCEEDINGS, 2009, 5735 : 107 - 120
  • [8] Network intrusion detection by a multi-stage classification system
    Cordella, LP
    Limongiello, A
    Sansone, C
    MULTIPLE CLASSIFIER SYSTEMS, PROCEEDINGS, 2004, 3077 : 324 - 333
  • [9] CFS-MHA: A Two-Stage Network Intrusion Detection Framework
    Kaur, Ritinder
    Gupta, Neha
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY AND PRIVACY, 2022, 16 (01)
  • [10] A Machine Learning Based Two-Stage Wi-Fi Network Intrusion Detection System
    Reyes, Abel A.
    Vaca, Francisco D.
    Aguayo, Gabriel A. Castro
    Niyaz, Quamar
    Devabhaktuni, Vijay
    ELECTRONICS, 2020, 9 (10) : 1 - 18