The effect of attribute pairings in intrusion detection

Michael Milliken, Yaxin Bi, Leo Galway · 2014

As Network Intrusions have become larger and more pervasive the methods of detection have changed, a number of systems use ensemble methods to improve upon results from single classifiers or algorithms. The solutions proposed in the literature achieve good results, which primarily focus on classification of Network Intrusions by tailoring classification algorithms and feature selection. However fewer studies focus on investigation of relation between pairs of attributes, such as IP address and Port, as a single attribute. This paper proposes an effect analysis of pairs of attributes in order to improve intrusion detection using an ensemble-based classification approach.

Read the paper · More papers on PaperTik