Accès ouvert

Towards Data Fusion based Big Data Analytics for Intrusion Detection

Article scientifique 2022 Anglais

Résumé

Abstract Intrusion detection is seen as the most promising way for computer security. It is used to protect computer networks against different types of attacks. The major problem in the literature is the classification of data into two main classes: normal or intrusion. To solve this problem, several approaches have been proposed but the problem of false alarms is still present. To provide a solution to this problem, we have proposed a new intrusion detection approach based on data fusion. The main objective of this work is to suggest an approach of data fusion based Big Data analytics in order to detect intrusions; It is to build one dataset which combines various datasets and contains all the attacks’ types. This research consists in merging the heterogeneous datasets and removing redundancy information using Big Data analytics tools: Hadoop and Neo4j. In the next step, machine learning algorithms are implemented for learning. The first algorithm, called SSDM (Semantically Similar Data Miner), uses fuzzy logic to generate association rules between the different item sets. The second algorithm, called K2, is a score-based greedy search algorithm for learning Bayesian networks from data. Experimentation results prove that - in both cases - data fusion contributes to have very good results in terms of detection rates and false alarms.

Citer ce document

Jemili, F. (2022). Towards Data Fusion based Big Data Analytics for Intrusion Detection. https://doi.org/10.21203/rs.3.rs-2145452/v1

Accès au document

Voir sur le dépôt source

Ce document est hébergé sur son dépôt institutionnel d'origine.

Auteur(s)

Statistiques

Consultations : 1

Téléchargements : 0