On the combination of genetic fuzzy systems and pairwise learning for improving detection rates on Intrusion Detection Systems

被引:150
作者
Elhag, Salma [1 ]
Fernandez, Alberto [2 ]
Bawakid, Abdullah [3 ]
Alshomrani, Saleh [3 ]
Herrera, Francisco [3 ,4 ]
机构
[1] King Abdulaziz Univ, Dept Informat Syst, Jeddah 21413, Saudi Arabia
[2] Univ Jaen, Dept Comp Sci, Jaen, Spain
[3] King Abdulaziz Univ, Fac Comp & Informat Technol North Jeddah, Jeddah 21413, Saudi Arabia
[4] Univ Granada, CITIC UGR Res Ctr Informat & Commun Technol, Dept Comp Sci & Artificial Intelligence, Granada, Spain
关键词
Intrusion Detection Systems; Genetic Fuzzy Systems; Pairwise learning; One-vs-One; Misuse detection; MULTICLASS PROBLEMS; CLASSIFICATION; ALGORITHMS; TAXONOMY; PROPOSAL; DESIGN; MODELS; TRENDS; SET;
D O I
10.1016/j.eswa.2014.08.002
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Security policies of information systems and networks are designed for maintaining the integrity of both the confidentiality and availability of the data for their trusted users. However, a number of malicious users analyze the vulnerabilities of these systems in order to gain unauthorized access or to compromise the quality of service. For this reason, Intrusion Detection Systems have been designed in order to monitor the system and trigger alerts whenever they found a suspicious event. Optimal Intrusion Detection Systems are those that achieve a high attack detection rate together with a small number of false alarms. However, cyber attacks present many different characteristics which make them hard to be properly identified by simple statistical methods. According to this fact, Data Mining techniques, and especially those based in Computational Intelligence, have been used for implementing robust and accuracy Intrusion Detection Systems. In this paper; we consider the use of Genetic Fuzzy Systems within a pairwise learning framework for the development of such a system. The advantages of using this approach are twofold: first, the use of fuzzy sets, and especially linguistic labels, enables a smoother borderline between the concepts, and allows a higher interpretability of the rule set. Second, the divide-and-conquer learning scheme, in which we contrast all possible pair of classes with aims, improves the precision for the rare attack events, as it obtains a better separability between a "normal activity" and the different attack types. The goodness of our methodology is supported by means of a complete experimental study, in which we contrast the quality of our results versus the state-of-the-art of Genetic Fuzzy Systems for intrusion detection and the C4.5 decision tree. (C) 2014 Elsevier Ltd. All rights reserved.
引用
收藏
页码:193 / 202
页数:10
相关论文
共 67 条
  • [1] Intrusion detection using a fuzzy genetics-based learning algorithm
    Abadeh, M. Sanlee
    Habibi, J.
    Lucas, C.
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2007, 30 (01) : 414 - 428
  • [2] Design and analysis of genetic fuzzy systems for intrusion detection in computer networks
    Abadeh, Mohammad Saniee
    Mohamadi, Hamid
    Habibi, Jafar
    [J]. EXPERT SYSTEMS WITH APPLICATIONS, 2011, 38 (06) : 7067 - 7075
  • [3] A proposal for the genetic lateral tuning of linguistic fuzzy systems and its interaction with rule selection
    Alcala, Rafael
    Alcala-Fdez, Jesus
    Herrera, Francisco
    [J]. IEEE TRANSACTIONS ON FUZZY SYSTEMS, 2007, 15 (04) : 616 - 635
  • [4] Special Issue on Evolutionary Fuzzy Systems
    Alcala, Rafael
    Nojima, Yusuke
    Ishibuchi, Hisao
    Herrera, Francisco
    [J]. INTERNATIONAL JOURNAL OF COMPUTATIONAL INTELLIGENCE SYSTEMS, 2012, 5 (02): : 209 - 211
  • [5] KEEL: a software tool to assess evolutionary algorithms for data mining problems
    Alcala-Fdez, J.
    Sanchez, L.
    Garcia, S.
    del Jesus, M. J.
    Ventura, S.
    Garrell, J. M.
    Otero, J.
    Romero, C.
    Bacardit, J.
    Rivas, V. M.
    Fernandez, J. C.
    Herrera, F.
    [J]. SOFT COMPUTING, 2009, 13 (03) : 307 - 318
  • [6] A Fuzzy Association Rule-Based Classification Model for High-Dimensional Problems With Genetic Rule Selection and Lateral Tuning
    Alcala-Fdez, Jesus
    Alcala, Rafael
    Herrera, Francisco
    [J]. IEEE TRANSACTIONS ON FUZZY SYSTEMS, 2011, 19 (05) : 857 - 872
  • [7] Reducing multiclass to binary: A unifying approach for margin classifiers
    Allwein, EL
    Schapire, RE
    Singer, Y
    [J]. JOURNAL OF MACHINE LEARNING RESEARCH, 2001, 1 (02) : 113 - 141
  • [8] IVTURS: A Linguistic Fuzzy Rule-Based Classification System Based On a New Interval-Valued Fuzzy Reasoning Method With Tuning and Rule Selection
    Antonio Sanz, Jose
    Fernandez, Alberto
    Bustince, Humberto
    Herrera, Francisco
    [J]. IEEE TRANSACTIONS ON FUZZY SYSTEMS, 2013, 21 (03) : 399 - 411
  • [9] Axelsson S., 2000, ACM Transactions on Information and Systems Security, V3, P186, DOI 10.1145/357830.357849
  • [10] Axelsson S, 1998, 9817 DEP COMP ENG