A multicriterion fuzzy classification method with greedy attribute selection for anomaly-based intrusion detection

El Sayed M. El-Alfy*, Feras N. Al-Obeidat

*Corresponding author for this work

Research output: Contribution to journalConference articlepeer-review

22 Scopus citations

Abstract

Intrusion is widely recognized as a chronic and recurring problem of computer systems' security with the continual changes and increasing volume of hacking techniques. This paper explores a new countermeasure approach for anomaly-based intrusion detection using a multicriterion fuzzy classification method combined with a greedy attribute selection. The proposed approach has the advantage of dealing with various types of attributes including network traffic basic TCP/IP packet headers, as well as contentbased, time-based and host-based attributes. at the same time, to reduce the dimensionality and increase the computational efficiency, the greedy attribute selection algorithm enables it to choose an optimal subset of attributes that is most relevant for detecting intrusive events. The simplicity of the constructed model allows it to be replicated at various network components in emerging open system infrastructures such as sensor networks, wireless ad hoc networks, cloud computing, and smart grids. The proposed approach is evaluated and compared on a commonly-used intrusion detection benchmark dataset. The results show more than 99.9% overall accuracy with high detection rates for various types of intrusions can be achieved with about 26% only of the available attributes.

Original languageEnglish
Pages (from-to)55-62
Number of pages8
JournalProcedia Computer Science
Volume34
DOIs
StatePublished - 2014

Bibliographical note

Funding Information:
The second author would like to acknowledge the support provided by King Abdulaziz City for Science and Technology (KACST) through the Science & Technology Unit at King Fahd University of Petroleum & Minerals (KFUPM) for funding this work through project No. 11-INF1658-04 as part of the National Science, Technology and Innovation Plan.

Keywords

  • Attribute selection
  • Dimensionality reduction
  • Intrusion detection
  • Machine learning
  • Multicriterion fuzzy classification

ASJC Scopus subject areas

  • General Computer Science

Fingerprint

Dive into the research topics of 'A multicriterion fuzzy classification method with greedy attribute selection for anomaly-based intrusion detection'. Together they form a unique fingerprint.

Cite this