A hybrid network intrusion detection system using simplified swarm optimization (SSO)

被引:122
作者
Chung, Yuk Ying [1 ]
Wahid, Noorhaniza [2 ]
机构
[1] Univ Sydney, Sch Informat Technol, Sydney, NSW 2006, Australia
[2] Univ Tun Hussein Onn Malaysia, Fac Comp Sci & Informat Technol, Batu Pahat, Malaysia
关键词
Particle swarm optimization; Local search; Classification; Data mining; Network intrusion detection; CLASSIFICATION; ENSEMBLE; PSO;
D O I
10.1016/j.asoc.2012.04.020
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The network intrusion detection techniques are important to prevent our systems and networks from malicious behaviors. However, traditional network intrusion prevention such as firewalls, user authentication and data encryption have failed to completely protect networks and systems from the increasing and sophisticated attacks and malwares. In this paper, we propose a new hybrid intrusion detection system by using intelligent dynamic swarm based rough set (IDS-RS) for feature selection and simplified swarm optimization for intrusion data classification. IDS-RS is proposed to select the most relevant features that can represent the pattern of the network traffic. In order to improve the performance of SSO classifier, a new weighted local search (WLS) strategy incorporated in SSO is proposed. The purpose of this new local search strategy is to discover the better solution from the neighborhood of the current solution produced by SSO. The performance of the proposed hybrid system on KDDCup 99 dataset has been evaluated by comparing it with the standard particle swarm optimization (PSO) and two other most popular benchmark classifiers. The testing results showed that the proposed hybrid system can achieve higher classification accuracy than others with 93.3% and it can be one of the competitive classifier for the intrusion detection system. (C) 2012 Elsevier B.V. All rights reserved.
引用
收藏
页码:3014 / 3022
页数:9
相关论文
共 49 条
[1]  
Abraham A, 2005, STUD COMP INTELL, V4, P191
[2]  
Abraham A., 2007, Int. J. Netw. Secur, V4, P328
[3]   A PSO and a Tabu search heuristics for the assembly scheduling problem of the two-stage distributed database application [J].
Allahverdi, A ;
Al-Anzi, FS .
COMPUTERS & OPERATIONS RESEARCH, 2006, 33 (04) :1056-1080
[4]   An evolutionary memetic algorithm for rule extraction [J].
Ang, J. H. ;
Tan, K. C. ;
Mamun, A. A. .
EXPERT SYSTEMS WITH APPLICATIONS, 2010, 37 (02) :1302-1315
[5]  
[Anonymous], 1999, KDDCUP 99 DATASET
[6]  
Asaka M, 2001, IEICE T INF SYST, VE84D, P570
[7]   Feature selection with Intelligent Dynamic Swarm and Rough Set [J].
Bae, Changseok ;
Yeh, Wei-Chang ;
Chung, Yuk Ying ;
Liu, Sin-Long .
EXPERT SYSTEMS WITH APPLICATIONS, 2010, 37 (10) :7026-7032
[8]   IDEAS: Intrusions detection based on emotional ants for sensors [J].
Banerjee, S ;
Grosan, C ;
Abraham, A .
5th International Conference on Intelligent Systems Design and Applications, Proceedings, 2005, :344-349
[9]  
Banerjee S., 2005, INT J APPL SCI COMPU, V12, P152
[10]  
Chen GL, 2007, ADV SOFT COMP, V40, P666