An Anomaly Intrusion Detection System Based on Vector Quantization. Zheng, J. and Hu, M. IEICE TRANSACTIONS on Information and Systems, E89-D(1):201--210, January, 2006. 00060
An Anomaly Intrusion Detection System Based on Vector Quantization [link]Paper  abstract   bibtex   
Machine learning and data mining algorithms are increasingly being used in the intrusion detection systems (IDS), but their performances are laggard to some extent especially applied in network based intrusion detection: the larger load of network traffic monitoring requires more efficient algorithm in practice. In this paper, we propose and design an anomaly intrusion detection (AID) system based on the vector quantization (VQ) which is widely used for data compression and high-dimension multimedia data index. The design procedure optimizes the performance of intrusion detection by jointly accounting for accurate usage profile modeling by the VQ codebook and fast similarity measures between feature vectors to reduce the computational cost. The former is just the key of getting high detection rate and the later is the footstone of guaranteeing efficiency and real-time style of intrusion detection. Experiment comparisons to other related researches show that the performance of intrusion detection is improved greatly.
@article{ zheng_anomaly_2006,
  title = {An {Anomaly} {Intrusion} {Detection} {System} {Based} on {Vector} {Quantization}},
  volume = {E89-D},
  issn = {1745-1361, 0916-8532},
  url = {http://search.ieice.org/bin/summary.php?id=e89-d_1_201&category=D&year=2006&lang=E&abst=},
  abstract = {Machine learning and data mining algorithms are increasingly being used in the intrusion detection systems (IDS), but their performances are laggard to some extent especially applied in network based intrusion detection: the larger load of network traffic monitoring requires more efficient algorithm in practice. In this paper, we propose and design an anomaly intrusion detection (AID) system based on the vector quantization (VQ) which is widely used for data compression and high-dimension multimedia data index. The design procedure optimizes the performance of intrusion detection by jointly accounting for accurate usage profile modeling by the VQ codebook and fast similarity measures between feature vectors to reduce the computational cost. The former is just the key of getting high detection rate and the later is the footstone of guaranteeing efficiency and real-time style of intrusion detection. Experiment comparisons to other related researches show that the performance of intrusion detection is improved greatly.},
  number = {1},
  urldate = {2015-06-18TZ},
  journal = {IEICE TRANSACTIONS on Information and Systems},
  author = {Zheng, Jun and Hu, Mingzeng},
  month = {January},
  year = {2006},
  note = {00060},
  keywords = {_tablet},
  pages = {201--210}
}
Downloads: 0