Review of KDD Cup '99, NSL-KDD and Kyoto 2006+ datasets

  • Protić D
N/ACitations
Citations of this article
133Readers
Mendeley users who have this article in their library.

Abstract

This paper presents a review of three datasets, namely KDD Cup ‘99, NSL-KDD and Kyoto 2006+ datasets, which are widely used in researching intrusion detection in computer networks. The KDD Cup ‘99 dataset consists of five million records, each containing 41 features which can classify malicious attacks into four classes: Probe, DoS, U2R and R2L. The KDD Cup ‘99 dataset cannot reflect real traffic data since it was generated by simulation over a virtual computer network. In the NSL-KDD dataset, redundant and duplicate records form the KDD Cup ‘99 dataset are removed from training and test sets, respectively. The Kyoto 2006+ dataset is built on real three year-network traffic data which are labeled as normal (no attack), attack (known attack) and unknown attack. The Kyoto 2006+ dataset contains 14 statistical features derived from the KDD Cup ‘99 dataset and 10 additional features.

Cite

CITATION STYLE

APA

Protić, D. (2018). Review of KDD Cup ’99, NSL-KDD and Kyoto 2006+ datasets. Vojnotehnicki Glasnik, 66(3), 580–596. https://doi.org/10.5937/vojtehg66-16670

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free