Research Article

Network Anomaly Detection System with Optimized DS Evidence Theory

Table 10

Comparison of BP, DS with SBPA and ODS with RBPA for new attacks.

Attack nameTotal connectionsDetected
connections
DR (%)
BPDS +
SBPA
ODS +
RBPA
BPDS +
SBPA
ODS +
RBPA

Apache279479279479499.75 100.00 100.00
httptunnel15815515715898.10 99.37 100.00
mailbomb50004893500050097.86 100.00 100.00
mscan105310501050105299.72 99.72 99.91
named1716171794.12 100.00 100.00
processtable75975875975999.87 100.00 100.00
ps16161616100.00 100.00 100.00
saint736736735736100.00 99.86 100.00
sendmail1714161782.35 94.12 100.00
snmpgetattack774177047716773999.52 99.68 99.97
snmpguess240624042404240699.92 99.92 100.00
sqlattack2212100.00 50.00 100.00
udpstorm20220.00 100.00 100.00
worm2222100.00 100.00 100.00
xlock976877.78 66.67 88.89
xsnoop434475.00 100.00 100.00
xterm13131313100.00 100.00 100.00

Average89.65 94.67 99.34