Random Forest Similarity-based Intrusion Detection
Yan Hai-zhen · Information Security and Communications Privacy · 2009
The key point is how to define similarity by using clustering or classification for intrusion detection.The existing methods for computing similarity are not so ideal in dealing with the classified attributes.This paper proposes a new method to compute similarity for the task of classifying data as intrusion or not.Testing the algorithm on KDD'99 dataset indicates that it could obviousely improve the effect of classification.