Feature selection using information gain for improved structural-based alert correlation

Grouping and clustering alerts for intrusion detection based on the similarity of features is referred to as structurally base alert correlation and can discover a list of attack steps. Previous researchers selected different features and data sources manually based on their knowledge and experience...

Full description

Bibliographic Details
Main Authors: Alhaj, T. A., Siraj, M. M., Zainal, A., Elshoush, H. T., Elhaj, F.
Format: Article
Language:English
Published: Public Library of Science 2016
Subjects:
Online Access:http://eprints.utm.my/71959/7/AnazidaZainal2016_FeatureSelectionusingInformationGain.pdf