Vol. 2,No. 12, December 2012
Author(s): Ali Raeeyat, Hedieh Sajedi
Abstract: Due to the rapid development of computer networks, intrusions and attacks into these networks have grown, and occur in various ways. Thus, usually an intrusion detection system can play an important role in security protection and intruders‟ accessibility to network prevention. In this paper, a new hybrid approach, which is called HIDS:DC-ADT, is used to design proposed detection engine. In the proposed intrusion detection system, the anomaly detection engine is responsible to detect new and unknown attacks and the misuse detection engine is responsible to protect anomaly detection system. Through this, it is assured that collected data and patterns be safe for anomaly detection system. In the intrusion anomaly detection using statistical correlation method that is of data correlation methods, normal behavior of network is analyzed statistically by KDD-Cup99 data-set. Further, the Data Correlation Graph (DCG) has been proposed to show behaviors deviation of normal behavior. In misuse detection, Principal Components Analysis (PCA) is used to dimensionality reduction. More, a new classification method by Adaboost algorithm using base classifier of decision tree C4.5 has been introduced for classification. Simulation results show that this hybrid system can reach a competitive accuracy and efficiency.
International Association for Academians is an International institute with regional headquarters in Canada.