Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

💡[Feature]: Intrution Detection System using Association Rule Mining #1351

Closed
4 tasks done
IkkiOcean opened this issue Oct 10, 2024 · 3 comments
Closed
4 tasks done
Labels
enhancement New feature or request

Comments

@IkkiOcean
Copy link
Contributor

Is there an existing issue for this?

  • I have searched the existing issues

Feature Description

The goal of this feature is to develop an Intrusion Detection System (IDS) Model that leverages Association Rule Mining techniques to identify unusual patterns of network activity. By applying these techniques, we aim to enhance the system's ability to detect potential security threats in real time, enabling quicker responses to incidents and improving overall network security.

Use Case

  1. Real-Time Threat Detection

    • As a security analyst, I want to monitor network traffic in real time so that I can quickly identify and respond to potential threats based on established patterns.
  2. Historical Data Analysis

    • As a network administrator, I want to analyze historical network activity to discover long-term trends and patterns that may indicate recurring security issues.
  3. Customizable Alerting

    • As a security engineer, I want to set customizable thresholds for alerts so that I can adjust the sensitivity of the IDS according to the organization's security policies and risk tolerance.
  4. Visualization of Network Patterns

    • As a system administrator, I want to visualize detected patterns and anomalies in network traffic over time, allowing me to present insights and findings to stakeholders effectively.
  5. Integration with Existing Security Tools

    • As a security operations manager, I want the IDS to integrate with our existing security tools and frameworks, enhancing our overall security posture and enabling centralized monitoring.

Benefits

No response

Add ScreenShots

No response

Priority

High

Record

  • I have read the Contributing Guidelines
  • I'm a GSSOC'24 contributor
  • I want to work on this issue
@IkkiOcean IkkiOcean added the enhancement New feature or request label Oct 10, 2024
Copy link

Thank you for creating this issue! 🎉 We'll look into it as soon as possible. In the meantime, please make sure to provide all the necessary details and context. If you have any questions reach out to LinkedIn. Your contributions are highly appreciated! 😊

Note: I Maintain the repo issue twice a day, or ideally 1 day, If your issue goes stale for more than one day you can tag and comment on this same issue.

You can also check our CONTRIBUTING.md for guidelines on contributing to this project.
We are here to help you on this journey of opensource, any help feel free to tag me or book an appointment.

@sanjay-kv
Copy link
Member

#1367

Copy link

Hello @IkkiOcean! Your issue #1351 has been closed. Thank you for your contribution!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

2 participants