%0 Conference Proceedings %T Scaling up Detection Rates and Reducing False Positives in Intrusion Detection using NBTree %+ Equipe de Recherche en Ingénierie des Connaissances (ERIC) %A Farid, Dewan, Md %A Nguyen, Huu Hoa %A Darmont, Jérôme %A Harbi, Nouria %A Rahman, Mohammad Zahidur %< avec comité de lecture %B International Conference on Data Mining and Knowledge Engineering (ICDMKE 2010) %C Rome, Italy %Y WASET %P 0 %8 2010 %D 2010 %Z Computer Science [cs]/Cryptography and Security [cs.CR]Conference papers %X In this paper, we present a new learning algorithm for anomaly based network intrusion detection using improved self adaptive naïve Bayesian tree (NBTree), which induces a hybrid of decision tree and naïve Bayesian classifier. The proposed approach scales up the balance detections for different attack types and keeps the false positives at acceptable level in intrusion detection. In complex and dynamic large intrusion detection dataset, the detection accuracy of naïve Bayesian classifier does not scale up as well as decision tree. It has been successfully tested in other problem domains that naïve Bayesian tree improves the classification rates in large dataset. In naïve Bayesian tree nodes contain and split as regular decision-trees, but the leaves contain naïve Bayesian classifiers. The experimental results on KDD99 benchmark network intrusion detection dataset demonstrate that this new approach scales up the detection rates for different attack types and reduces false positives in network intrusion detection. %G English %Z Programme doctoral Erasmus Mundus eLink %2 https://hal.science/hal-00503961/document %2 https://hal.science/hal-00503961/file/DMF_ICDMKE_2010_p1.pdf %L hal-00503961 %U https://hal.science/hal-00503961 %~ UNIV-LYON2 %~ ERIC %~ LABEXIMU %~ UDL