mailto:uumlib@uum.edu.my 24x7 Service; AnyTime; AnyWhere

Features selection for IDS in encrypted traffic using genetic algorithm

Barati, Mehdi and Abdullah, Azizol and Mahmod, Ramlan and Mustapha, Norwati and Udzir, Nur Izura (2013) Features selection for IDS in encrypted traffic using genetic algorithm. In: 4th International Conference on Computing and Informatics (ICOCI 2013), 28 -30 August 2013, Kuching, Sarawak, Malaysia.

[thumbnail of PID38.pdf] PDF
Restricted to Registered users only

Download (716kB) | Request a copy

Abstract

Intrusion Detection System (IDS) is one method to detect unauthorized intrusions into computer systems and networks. On the other hand, encrypted exchanges between users are widely used to ensure data security. Traditional IDSs are not able to reactive efficiently in encrypted and tunneled traffic due to inability to analyze packet content. An encrypted malicious traffic is able to evade the detection by IDS. Feature selection for IDS is a fundamental step in detection procedure and aims to eliminate some irrelevant and unneeded features from the dataset. This paper presents a hybrid feature selection using Genetic Algorithm and Bayesian Network to improve Brute Force attack detection in Secure Shell (SSH) traffic.Brute Force attack traffic collected in a client-server model is implemented in proposed method.Our results prove that the most efficient features were selected by proposed method.

Item Type: Conference or Workshop Item (Paper)
Additional Information: ISBN: 9789832078791 Organized by: Universiti Utara Malaysia
Uncontrolled Keywords: feature selection, genetic algorithm, IDS, encrypted traffic
Subjects: Q Science > QA Mathematics > QA76 Computer software
Divisions: College of Arts and Sciences
Depositing User: Mrs. Norazmilah Yaakub
Date Deposited: 25 Aug 2014 06:32
Last Modified: 25 Aug 2014 06:32
URI: https://repo.uum.edu.my/id/eprint/12026

Actions (login required)

View Item View Item