Applications of data mining to network intrusion detection

ZHANG Jin-rong,LIU Feng,ZHAO Zhi-hong,LUO Bin
DOI: https://doi.org/10.16208/j.issn1000-7024.2009.24.052
2009-01-01
Abstract:There are many problems such as poor adaptability,limited extensibility and experts hand-coding in traditional intrusion detection systems.Data mining-based intrusion detection techniques can extract knowledge and patterns of abnormal intrusions and normal user profiles from training data automatically,hence resolving the problems of tradition IDS properly.Main applications of data mining to network intrusion detection are surveied,i.e.clustering analysis,classification analysis,association rule analysis and sequential patterns analysis.Basic principles of each as well as latest research and improvements.At last,a summary of existing problems and future research directions is given.
What problem does this paper attempt to address?