2013Unpublished venueRequires access

A Review of Data Mining based Intrusion Detection Techniques

Kamini Maheshwar, Divakar Singh

Open publisher page 6 citations

Abstract

Traditional Data Mining techniques operate on structured data such as corporate databases; this has been an active area of research for many years. Intrusion detection is the process of monitoring and analyzing the events occurring in a computer system in order to detect signs of security problems. Intrusion detection is an area growing in relevance as more and more sensitive data are stored and processed in networked systems. An intrusion detection system (IDS) monitors networked devices and looks for anomalous or malicious behavior in the patterns of activity in the audit stream. A comprehensive ID requires a significant amount of human expertise and time for development. Data mining-based IDSs require less expert knowledge yet provide good performance. These systems are also capable of generalizing to new and unknown attacks. Data mining based intrusion Building an IDS is a complex task of knowledge engineering. In this paper we represent a survey of data mining based intrusion techniques. The data mining techniques are categorized based upon different approaches like association rule, classification techniques. The detection type is borrowed from intrusion detection as either misuse detection or anomaly detection. This paper provides the major advancement in the data mining based intrusion detection research using these approaches, the features and categories in the surveyed work.

About this research paper

What this paper is about

Traditional Data Mining techniques operate on structured data such as corporate databases; this has been an active area of research for many years. Intrusion detection is the process of monitoring and analyzing the events occurring in a computer system in order to detect signs of security problems. Intrusion detection is an area growing in relevance as more and more sensitive data are stored and processed in networked systems. An intrusion detection system (IDS) monitors networked devices and looks for anomalous or malicious behavior in the patterns of activity in the audit stream. A comprehensive ID requires a significant amount of human expertise and time for development. Data mining-based IDSs require less expert knowledge yet provide good performance. These systems are also capable of generalizing to new and unknown attacks. Data mining based intrusion Building an IDS is a complex task of knowledge engineering. In this paper we represent a survey of data mining based intrusion techniques. The data mining techniques are categorized based upon different approaches like association rule, classification techniques. The detection type is borrowed from intrusion detection as either misuse detection or anomaly detection. This paper provides the major advancement in the data mining based intrusion detection research using these approaches, the features and categories in the surveyed work.

Why it matters

OpenAlex reports 6 citations for this work. Citation counts describe recorded attention and do not establish research quality.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

Traditional Data Mining techniques operate on structured data such as corporate databases; this has been an active area of research for many years. Intrusion detection is the process of monitoring and analyzing the events occurring in a computer system in order to detect signs of security problems. Intrusion detection is an area growing in relevance as more and more sensitive data are stored and processed in networked systems. An intrusion detection system (IDS) monitors networked devices and looks for anomalous or malicious behavior in the patterns of activity in the audit stream. A comprehensive ID requires a significant amount of human expertise and time for development. Data mining-based IDSs require less expert knowledge yet provide good performance. These systems are also capable of generalizing to new and unknown attacks. Data mining based intrusion Building an IDS is a complex task of knowledge engineering. In this paper we represent a survey of data mining based intrusion techniques. The data mining techniques are categorized based upon different approaches like association rule, classification techniques. The detection type is borrowed from intrusion detection as either misuse detection or anomaly detection. This paper provides the major advancement in the data mining based intrusion detection research using these approaches, the features and categories in the surveyed work.

Key concepts: Intrusion detection system, Anomaly-based intrusion detection system, Data mining, Computer science, Anomaly detection, Misuse detection, Process (computing), Association rule learning

Related papers

Back to paper searchBrowse research topicsOriginal source
A Review of Data Mining based Intrusion Detection Techniques — Research Paper | ScholarLens