PSO-Driven Feature Selection and Hybrid Ensemble for Network Anomaly Detection
نویسندگان
چکیده
As a system capable of monitoring and evaluating illegitimate network access, an intrusion detection (IDS) profoundly impacts information security research. Since machine learning techniques constitute the backbone IDS, it has been challenging to develop accurate mechanism. This study aims enhance performance IDS by using particle swarm optimization (PSO)-driven feature selection approach hybrid ensemble. Specifically, final subsets derived from different datasets, i.e., NSL-KDD, UNSW-NB15, CICIDS-2017, are trained ensemble, comprising two well-known ensemble learners, gradient boosting (GBM) bootstrap aggregation (bagging). Instead training GBM with individual learning, we train on subsample each dataset combine class prediction majority voting. Our proposed scheme led pivotal refinements over existing baselines, such as TSE-IDS, voting ensembles, weighted voting, other ensemble-based LightGBM.
منابع مشابه
Ensemble Classification and Extended Feature Selection for Credit Card Fraud Detection
Due to the rise of technology, the possibility of fraud in different areas such as banking has been increased. Credit card fraud is a crucial problem in banking and its danger is over increasing. This paper proposes an advanced data mining method, considering both feature selection and decision cost for accuracy enhancement of credit card fraud detection. After selecting the best and most effec...
متن کاملEnsemble of Feature Chains for Anomaly Detection
Along with recent technological advances more and more new threats and advanced cyber-attacks appear unexpectedly. Developing methods which allow for identification and defense against such unknown threats is of great importance. In this paper we propose new ensemble method (which improves over the known cross-feature analysis, CFA, technique) allowing solving anomaly detection problem in semi-...
متن کاملsv(M)kmeans - A Hybrid Feature Selection Technique for Reducing False Positives in Network Anomaly Detection
Feature Selection in large multi-dimensional data sets is becoming increasingly important for several real world applications. One such application, used by network administrators, is Network Intrusion Detection. The major problem with anomaly based intrusion detection systems is high number of false positives. Motivated by such a requirement, we propose sv(M)kmeans: a two step hybrid feature s...
متن کاملNetwork Anomaly Detection using PSO-ANN
In this work, the continue from the last research work done [20], thus it is proposed a data mining based anomaly detection system, aiming to detect volume anomalies, using Simple Network Management Protocol (SNMP) monitoring. The method is novel in terms of combining the use of Digital Signature of Network Segment (DSNS) with the evolutionary technique called Particle Swarm Optimization (PSO)[...
متن کاملAn Efficient Hybrid Clustering-PSO Algorithm for Anomaly Intrusion Detection
Generally speaking, in anomaly intrusion detection, modeling the normal behavior of activities performed by a user or a program is an important issue. Currently most machine-learning algorithms which are widely used to establish user’s normal behaviors need labeled data for training first, so they are computational expensive and sometimes misled by artificial data. This study proposes a PSO-bas...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
ژورنال
عنوان ژورنال: Big data and cognitive computing
سال: 2022
ISSN: ['2504-2289']
DOI: https://doi.org/10.3390/bdcc6040137