Title :
Network intrusion detection system using L1-norm PCA
Author :
Chougdali Khalid;Elkhadir Zyad;Benattou Mohammed
Author_Institution :
GEST Research group, National School of Applied Sciences (ENSA) Ibn Tofail University, Kenitra
Abstract :
The rapid evolution of information and communication technologies leads to a big networks security problem. For this reason, the Intrusion Detection System (IDS) has been developed in order to detect and prevent computer network attacks. However, the majority of IDSs operate on huge network traffic data with many useless and redundant features. Consequently, the IDS generates a lot of false alarms and the intrusion detection process becomes difficult and imprecise. To improve the performance of an IDS, many data dimensionality reduction methods, such as Principal Component Analysis (PCA), have been proposed. However, the classical PCA approach, that is based on the covariance matrix of the data, is very sensitive to outliers. In order to overcome this problem, we propose to introduce a new variant of PCA namely L1-norm PCA. This new method is based on the L1-norm maximization, which is more robust to outliers, instead of the Euclidean norm in the classical PCA. Extensive experiments on the well-known KDDcup99 dataset are exploited for testing the effectiveness of the proposed approach. Obtained results confirm the superiority of L1-norm PCA over the traditional PCA in terms of network attacks detection and false alarms reduction.
Keywords :
"Principal component analysis","Intrusion detection","Optimization","Training","Probes","Linear programming","Electronic mail"
Conference_Titel :
Information Assurance and Security (IAS), 2015 11th International Conference on
DOI :
10.1109/ISIAS.2015.7492755