Integrate Model and Instance Based Machine Learning for Network Intrusion Detection

dc.contributor.advisorLuo, Xiao
dc.contributor.advisorKing, Brian
dc.contributor.authorAra, Lena
dc.contributor.otherEl-Sharkawy, Mohamed
dc.date.accessioned2018-12-10T13:42:43Z
dc.date.available2018-12-10T13:42:43Z
dc.date.issued2018-12
dc.degree.date2018en_US
dc.degree.disciplineElectrical & Computer Engineeringen
dc.degree.grantorPurdue Universityen_US
dc.degree.levelM.S.E.C.E.en_US
dc.descriptionIndiana University-Purdue University Indianapolis (IUPUI)en_US
dc.description.abstractIn computer networks, the convenient internet access facilitates internet services, but at the same time also augments the spread of malicious software which could represent an attack or unauthorized access. Thereby, making the intrusion detection an important area to explore for detecting these unwanted activities. This thesis concentrates on combining the Model and Instance Based Machine Learning for detecting intrusions through a series of algorithms starting from clustering the similar hosts. Similar hosts have been found based on the supervised machine learning techniques like Support Vector Machines, Decision Trees and K Nearest Neighbors using our proposed Data Fusion algorithm. Maximal cliques of Graph Theory has been explored to find the clusters. A recursive way is proposed to merge the decision areas of best features. The idea is to implement a combination of model and instance based machine learning and analyze how it performs as compared to a conventional machine learning algorithm like Random Forest for intrusion detection. The system has been evaluated on three datasets by CTU-13. The results show that our proposed method gives better detection rate as compared to traditional methods which might overfit the data. The research work done in model merging, instance based learning, random forests, data mining and ensemble learning with regards to intrusion detection have been studied and taken as reference.en_US
dc.identifier.citationLena Ara, Xiao Luo, Identify the Maximal Cluster of Hosts Based on Data Fusion and Machine Learning Algorithms for Intrusion Detection, 2018 IEEE 4th International Conference on Big Data Security on Cloud (BigDataSecurity), IEEE International Conference on High Performance and Smart Computing,(HPSC) and IEEE International Conference on Intelligent Data and Security (IDS)en_US
dc.identifier.urihttps://hdl.handle.net/1805/17958
dc.identifier.urihttp://dx.doi.org/10.7912/C2/2488
dc.language.isoen_USen_US
dc.rightsAttribution-NoDerivs 3.0 United States
dc.rights.urihttp://creativecommons.org/licenses/by-nd/3.0/us/
dc.subjectIntrusion Detection Systemen_US
dc.subjectClusteringen_US
dc.subjectMachine Learningen_US
dc.subjectBotnet Trafficen_US
dc.subjectModel and Instance Baseden_US
dc.titleIntegrate Model and Instance Based Machine Learning for Network Intrusion Detectionen_US
dc.typeThesisen
Files
Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
Ara_Lena_Thesis_Submission.pdf
Size:
1.88 MB
Format:
Adobe Portable Document Format
Description:
License bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.99 KB
Format:
Item-specific license agreed upon to submission
Description: