A decision tree-aware genetic algorithm for botnet detection

7Citations
Citations of this article
14Readers
Mendeley users who have this article in their library.

Abstract

In this paper, the botnet detection problem is defined as a feature selection problem and the genetic algorithm (GA) is used to search for the best significant combination of features from the entire search space of set of features. Furthermore, the Decision Tree (DT) classifier is used as an objective function to direct the ability of the proposed GA to locate the combination of features that can correctly classify the activities into normal traffics and botnet attacks. Two datasets namely the UNSW-NB15 and the Canadian Institute for Cybersecurity Intrusion Detection System 2017 (CICIDS2017), are used as evaluation datasets. The results reveal that the proposed DT-aware GA can effectively find the relevant features from the whole features set. Thus, it obtains efficient botnet detection results in terms of F-score, precision, detection rate, and number of relevant features, when compared with DT alone.

Cite

CITATION STYLE

APA

Alhijaj, T. B., Hameed, S. M., & Attea, B. A. (2021). A decision tree-aware genetic algorithm for botnet detection. Iraqi Journal of Science, 62(7), 2454–2462. https://doi.org/10.24996/ijs.2021.62.7.34

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free