Building A Fast Intrusion Detection System For High-Speed-Networks: Probe and DoS Attacks Detection

被引:14
|
作者
Ait Tchakoucht, Taha [1 ]
Ezziyyani, Mostafa [1 ]
机构
[1] Univ Abdelmalek Essaadi, Fac Sci & Tech, Old Rd Airport,Km10,PB 416, Tangier 90000, Morocco
关键词
D O I
10.1016/j.procs.2018.01.151
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Using computers and other intelligent devices associated with internet has become vital in the modern life. Banking transactions, education, trade marketing, social networking, etc. are all examples of those daily and important operations that rely on such technologies, which have generated a large amount of data transiting with high velocity in the last decade. This was accompanied by an extraordinary growth in number and sophistication of cyber threats, going from opportunistic and unstructured to targeted and highly structured. Thus, detecting intrusions in such circumstances requires high levels of accuracy and efficiency, so that heavy losses are prevented. Many intrusion detection models in the literature do not propose real-time solutions to deal with the aforementioned obstacles. This motivates us to propose a lightweight intrusion detection system, for probe and DoS attacks detection. We select the most important set of features using Information Gain (IG), and Correlation based Feature (CFS) selection filters, applied on a resampled version of KDD'99. Furthermore, we employ four machine learning methods, namely C4.5, Na ve Bayes (NB), Random Forest (RF) and REPTree, as wrappers. Results show good detection and false positive rates, of around 99.6%, and 0.3% for DoS attacks, and 99.8% and 2.7% for Probe attacks. Processing time is also optimized when evaluated using the best selected feature subset. (C) 2018 The Authors. Published by Elsevier B.V.
引用
收藏
页码:521 / 530
页数:10
相关论文
共 50 条
  • [1] Detection of DoS attacks using intrusion detection sensors
    Ramakrishna, P
    Maarof, MA
    [J]. APOC 2002: ASIA-PACIFIC OPTICAL AND WIRELESS COMMUNICATIONS; NETWORK DESIGN AND MANAGEMENT, 2002, 4909 : 69 - 80
  • [2] Influence of DoS Attacks on Intrusion Detection Systems
    Titorenko, Aleksey A.
    Goncharov, Dmitry E.
    [J]. PROCEEDINGS OF THE 2018 IEEE CONFERENCE OF RUSSIAN YOUNG RESEARCHERS IN ELECTRICAL AND ELECTRONIC ENGINEERING (EICONRUS), 2018, : 144 - 146
  • [3] Detection of low intensity dos attacks using fuzzy based intrusion detection system
    Baig, Habibullah
    Kamran, Farrukh
    [J]. ICECE 2006: PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON ELECTRICAL AND COMPUTER ENGINEERING, 2006, : 591 - 594
  • [4] Towards an Efficient Intrusion Detection System for High Speed Networks
    Qadeer, Hassan
    Talat, Ammad
    Qureshi, Kashif Naseer
    Bashir, Faisal
    Ul Islam, Najam
    [J]. PROCEEDINGS OF 2020 17TH INTERNATIONAL BHURBAN CONFERENCE ON APPLIED SCIENCES AND TECHNOLOGY (IBCAST), 2020, : 428 - 433
  • [5] CAMNEP: An intrusion detection system for high-speed networks
    Rehák, Martin
    Pechouček, Michal
    Bartoš, Karel
    Grill, Martin
    Čeleda, Pavel
    Krmíček, Vojtech
    [J]. Progress in Informatics, 2008, (05): : 65 - 74
  • [6] A parallel intrusion detection system for high-speed networks
    Lai, HG
    Cai, SW
    Huang, H
    Xie, JY
    Li, H
    [J]. APPLIED CRYPTOGRAPHY AND NETWORK SECURITY, PROCEEDINGS, 2004, 3089 : 439 - 451
  • [7] Intrusion detection for high-speed networks based on producing system
    Chen, Ken
    Yu, Fei
    Xu, Cheng
    Liu, Yan
    [J]. FIRST INTERNATIONAL WORKSHOP ON KNOWLEDGE DISCOVERY AND DATA MINING, PROCEEDINGS, 2007, : 532 - +
  • [8] Detecting DoS and DDoS Attacks by using an Intrusion Detection and Remote Prevention System
    Leu, Fang-Yie
    Li, Zhi-Yang
    [J]. FIFTH INTERNATIONAL CONFERENCE ON INFORMATION ASSURANCE AND SECURITY, VOL 2, PROCEEDINGS, 2009, : 251 - 254
  • [9] Intrusion Detection System for 5G with a Focus on DOS/DDOS Attacks
    Iashvili, Giorgi
    Iavich, Maksim
    Bocu, Razvan
    Odarchenko, Roman
    Gnatyuk, Sergiy
    [J]. PROCEEDINGS OF THE 11TH IEEE INTERNATIONAL CONFERENCE ON INTELLIGENT DATA ACQUISITION AND ADVANCED COMPUTING SYSTEMS: TECHNOLOGY AND APPLICATIONS (IDAACS'2021), VOL 2, 2021, : 861 - 864
  • [10] Fast Intrusion Detection by using High Speed Focused Time Delay Neural Networks
    El-Bakry, Hazem M.
    Riad, Alaa M.
    Fahmy, Mervat M.
    Mastorakis, Nikos
    [J]. PROCEEDINGS OF THE 3RD INTERNATIONAL CONFERENCE ON COMMUNICATIONS AND INFORMATION TECHNOLOGY, 2009, : 278 - +