Detailed Information

Cited 8 time in webofscience Cited 16 time in scopus
Metadata Downloads

Developing an Intrusion Detection Framework for High-Speed Big Data Networks: A Comprehensive Approachopen access

Authors
Siddique, KamranAkhtar, ZahidKhan, Muhammad AshfaqJung, Yong-HwanKim, Yangwoo
Issue Date
31-Aug-2018
Publisher
KSII-KOR SOC INTERNET INFORMATION
Keywords
Network intrusion detection systems; anomaly detection; bulk synchronous parallel; BSP; big data; machine learning; Darpa; KDD Cup 99; ISCX-UNB dataset
Citation
KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, v.12, no.8, pp 4021 - 4037
Pages
17
Indexed
SCIE
SCOPUS
KCI
Journal Title
KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS
Volume
12
Number
8
Start Page
4021
End Page
4037
URI
https://scholarworks.dongguk.edu/handle/sw.dongguk/16997
DOI
10.3837/tiis.2018.08.026
ISSN
1976-7277
1976-7277
Abstract
In network intrusion detection research, two characteristics are generally considered vital to building efficient intrusion detection systems (IDSs): an optimal feature selection technique and robust classification schemes. However, the emergence of sophisticated network attacks and the advent of big data concepts in intrusion detection domains require two more significant aspects to be addressed: employing an appropriate big data computing framework and utilizing a contemporary dataset to deal with ongoing advancements. As such, we present a comprehensive approach to building an efficient IDS with the aim of strengthening academic anomaly detection research in real-world operational environments. The proposed system has the following four characteristics: (i) it performs optimal feature selection using information gain and branch-and-bound algorithms; (ii) it employs machine learning techniques for classification, namely, Logistic Regression, Naive Bayes, and Random Forest; (iii) it introduces bulk synchronous parallel processing to handle the computational requirements of large-scale networks; and (iv) it utilizes a real-time contemporary dataset generated by the Information Security Centre of Excellence at the University of Brunswick (ISCX-UNB) to validate its efficacy. Experimental analysis shows the effectiveness of the proposed framework, which is able to achieve high accuracy, low computational cost, and reduced false alarms.
Files in This Item
There are no files associated with this item.
Appears in
Collections
College of Engineering > Department of Information and Communication Engineering > 1. Journal Articles

qrcode

Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.

Related Researcher

Researcher Kim, Yang Woo photo

Kim, Yang Woo
College of Engineering (Department of Information and Communication Engineering)
Read more

Altmetrics

Total Views & Downloads

BROWSE