Intrusion Detection Research Based on Support Vector Machine

DAI Tian-hong,WANG Ke-qi,YANG Shao-chun
2008-01-01
Abstract:According to the traits of intrusion detection and support vector machines,an abnormal detection method was presented based on the least-squares Support Vector Machine,and an intrusion detection model was built based on support vector machine,which was used for the network data collection,feature extraction,data classification and distinguishing between normal data and abnormal data.A test was conducted on the intrusion detection data of KDD CUP'99 standards by selecting the subset of data_10_percent;the 41 attributes of this subset were taken as the characteristics,and the final attribute of this subset was labeled as back,ipsweep,neptun,portsweep and normal.200 data of each kind was respectively tested.The result shows that this method can obtain a higher detection rate and a lower false warning rate.
What problem does this paper attempt to address?