A Novel Adaptive Intrusion Detection System Based On Data Mining

Zhixin Yu,Jing R. Chen,Tianqing Zhu
DOI: https://doi.org/10.1109/icmlc.2005.1527344
2005-01-01
Abstract:A Data Mining based Adaptive Intrusion Detection Model (DMAIDM) is presented in this paper. The DMAIDM applies a fast heuristic clustering algorithm for mixed data (FHCAM) to distinguish intrusions from legal behaviors efficiently and an attribute-constrained based fuzzy mining algorithm (ACFMA) to construct intrusion Pattern-database automatically. Verification tests are carried out by using the 10% subset of KDD Cup 1999 Data Set, The average detection rate is 71.67% and the average false detection rate is 0.92%. And the detection rate increases from 65.25%(the second subset) to 85.7%(the ninth subset) adaptively. The experimental results reveal that the DMAIDM is successful in terms of not only accuracy but also efficiency in networks intrusion detection.
What problem does this paper attempt to address?