A Model of Evolving Intrusion Detection System Based on Data Mining and Immune Principle

JZ Zhao,MZ Xu,SL Sun,L You
DOI: https://doi.org/10.1109/tencon.2004.1414566
2004-01-01
Abstract:In this paper, an IDS framework based on data mining technique and immune principle is presented. Here data mining technique is used to discover frequently occurred patterns, which are equivalent to self proteins in immune system. Immune principle is explored to generate negative detectors, which does not match any self protein based on distance metric. These negative detectors are distributed into the network system to perform anomaly detection independently and concurrently. Our experiment shows that it has low false positive rate and high detection rate.
What problem does this paper attempt to address?