%0 Conference Proceedings %T Feature Grouping for Intrusion Detection System Based on Hierarchical Clustering %+ Software College [Shenyang] %+ Aberystwyth University %A Song, Jingping %A Zhu, Zhiliang %A Price, Chris %Z Part 2: 4th International Workshop on Security and Cognitive Informatics for Homeland Defense (SeCIHD 2014) %< avec comité de lecture %( Lecture Notes in Computer Science %B International Cross-Domain Conference and Workshop on Availability, Reliability, and Security (CD-ARES) %C Fribourg, Switzerland %Y Stephanie Teufel %Y Tjoa A Min %Y Ilsun You %Y Edgar Weippl %I Springer %3 Availability, Reliability, and Security in Information Systems %V LNCS-8708 %P 270-280 %8 2014-09-08 %D 2014 %R 10.1007/978-3-319-10975-6_21 %K Intrusion detection %K Mutual information %K Feature grouping %K Hierarchical clustering %Z Computer Science [cs] %Z Humanities and Social Sciences/Library and information sciencesConference papers %X Intrusion detection is very important to solve an increasing number of security threats. With new types of attack appearing continually, traditional approaches for detecting hazardous contents are facing a severe challenge. In this work, a new feature grouping method is proposed to select features for intrusion detection. The method is based on agglomerative hierarchical clustering method and is tested against KDD CUP 99 dataset. Agglomerative hierarchical clustering method is used to construct a hierarchical tree and it is combined with mutual information theory. Groups are created from the hierarchical tree by a given number. The largest mutual information between each feature and a class label within a certain group is then selected. The performance evaluation results show that better classification performance can be attained from such selected features. %G English %Z TC 5 %Z TC 8 %Z WG 8.4 %Z WG 8.9 %2 https://inria.hal.science/hal-01404004/document %2 https://inria.hal.science/hal-01404004/file/978-3-319-10975-6_21_Chapter.pdf %L hal-01404004 %U https://inria.hal.science/hal-01404004 %~ SHS %~ IFIP-LNCS %~ IFIP %~ IFIP-TC %~ IFIP-TC5 %~ IFIP-WG %~ IFIP-TC8 %~ IFIP-LNCS-8708 %~ IFIP-CD-ARES %~ IFIP-WG8-4 %~ IFIP-WG8-9