Evaluation effectiveness hybrid IDS using snort with naive bayes to detect attacks / Safwan Mawlood Hussein

The vast amount of attacks over the Internet makes the computer users and many organizations under potential violation of security. IDS monitor the network to observe suspicious actions going on in a computer or network devices. IDS with using one approach has ability only to detect either misuse or...

Full description

Saved in:
Bibliographic Details
Main Author: Hussein, Safwan Mawlood
Format: Thesis
Language:English
Published: 2012
Online Access:https://ir.uitm.edu.my/id/eprint/63971/1/63971.PDF
https://ir.uitm.edu.my/id/eprint/63971/
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:The vast amount of attacks over the Internet makes the computer users and many organizations under potential violation of security. IDS monitor the network to observe suspicious actions going on in a computer or network devices. IDS with using one approach has ability only to detect either misuse or anomaly attacks. This research proposed hybrid IDS by integrated Snort with Naive Bayes to enhance system security to detect attacks. This research used KDD Cup 1999 dataset for test provided hybrid IDS. Accuracy, detection rate, time to build model and false alarm rate used as parameter to measure performance between hybrid Snort with Naïve bayes, Snort with J48graft and Snort with Bayes Net. The result shows that there are slight differences between all the three paradigms