Anomaly network intrusion detection method in network security based on principle component analysis

Most current intrusion detection methods cannot process large amounts of audit data for real-time operation. In this paper, anomaly network intrusion detection method based on Principle Component Analysis (PCA) for data reduction and classifier in presented. Each network connection is transformed in...

Full description

Bibliographic Details
Main Authors: Chimphlee, Witcha, Md Sap, Mohd Noor, Abdullah, Abdul Hanan, Chimphlee, Siriporn
Format: Article
Language:English
Published: Penerbit UTM Press 2006
Subjects:
Online Access:http://eprints.utm.my/3288/1/114_Witcha_D06.pdf
_version_ 1825909367471341568
author Chimphlee, Witcha
Md Sap, Mohd Noor
Abdullah, Abdul Hanan
Chimphlee, Siriporn
author_facet Chimphlee, Witcha
Md Sap, Mohd Noor
Abdullah, Abdul Hanan
Chimphlee, Siriporn
author_sort Chimphlee, Witcha
collection ePrints
description Most current intrusion detection methods cannot process large amounts of audit data for real-time operation. In this paper, anomaly network intrusion detection method based on Principle Component Analysis (PCA) for data reduction and classifier in presented. Each network connection is transformed into an input data vector. Moreover, PCA is applied to reduce the high dimensional data vectors and distance between a vector, and its projection onto the subspace. Based on the preliminary analysis using a set of benchmark data from KDD (Knowledge Discovery and Data Mining) Competition designed by DARPA, PCA demonstrates the ability to reduce huge dimensional data into a lower dimensional subspace without losing important information. This finding can be used to further enhance the detection accuracy in detecting new types of intrusion by taking PCA as the preprocessing requirement in reducing high dimensional data.
first_indexed 2024-03-05T18:01:06Z
format Article
id utm.eprints-3288
institution Universiti Teknologi Malaysia - ePrints
language English
last_indexed 2024-03-05T18:01:06Z
publishDate 2006
publisher Penerbit UTM Press
record_format dspace
spelling utm.eprints-32882017-11-01T04:17:28Z http://eprints.utm.my/3288/ Anomaly network intrusion detection method in network security based on principle component analysis Chimphlee, Witcha Md Sap, Mohd Noor Abdullah, Abdul Hanan Chimphlee, Siriporn QA75 Electronic computers. Computer science Most current intrusion detection methods cannot process large amounts of audit data for real-time operation. In this paper, anomaly network intrusion detection method based on Principle Component Analysis (PCA) for data reduction and classifier in presented. Each network connection is transformed into an input data vector. Moreover, PCA is applied to reduce the high dimensional data vectors and distance between a vector, and its projection onto the subspace. Based on the preliminary analysis using a set of benchmark data from KDD (Knowledge Discovery and Data Mining) Competition designed by DARPA, PCA demonstrates the ability to reduce huge dimensional data into a lower dimensional subspace without losing important information. This finding can be used to further enhance the detection accuracy in detecting new types of intrusion by taking PCA as the preprocessing requirement in reducing high dimensional data. Penerbit UTM Press 2006-12 Article PeerReviewed application/pdf en http://eprints.utm.my/3288/1/114_Witcha_D06.pdf Chimphlee, Witcha and Md Sap, Mohd Noor and Abdullah, Abdul Hanan and Chimphlee, Siriporn (2006) Anomaly network intrusion detection method in network security based on principle component analysis. Jurnal Teknologi Maklumat, 18 (2). pp. 114-124. ISSN 0128-3790
spellingShingle QA75 Electronic computers. Computer science
Chimphlee, Witcha
Md Sap, Mohd Noor
Abdullah, Abdul Hanan
Chimphlee, Siriporn
Anomaly network intrusion detection method in network security based on principle component analysis
title Anomaly network intrusion detection method in network security based on principle component analysis
title_full Anomaly network intrusion detection method in network security based on principle component analysis
title_fullStr Anomaly network intrusion detection method in network security based on principle component analysis
title_full_unstemmed Anomaly network intrusion detection method in network security based on principle component analysis
title_short Anomaly network intrusion detection method in network security based on principle component analysis
title_sort anomaly network intrusion detection method in network security based on principle component analysis
topic QA75 Electronic computers. Computer science
url http://eprints.utm.my/3288/1/114_Witcha_D06.pdf
work_keys_str_mv AT chimphleewitcha anomalynetworkintrusiondetectionmethodinnetworksecuritybasedonprinciplecomponentanalysis
AT mdsapmohdnoor anomalynetworkintrusiondetectionmethodinnetworksecuritybasedonprinciplecomponentanalysis
AT abdullahabdulhanan anomalynetworkintrusiondetectionmethodinnetworksecuritybasedonprinciplecomponentanalysis
AT chimphleesiriporn anomalynetworkintrusiondetectionmethodinnetworksecuritybasedonprinciplecomponentanalysis