False Positives Reduction Techniques in Intrusion Detection Systems-A Review
During the last decade with the growth of cyber attacks, information safety has become an important issue all over the world. Intrusion Detection Systems (IDSs) are an essential element for network security infrastructure and play a very important role in detecting large number of attacks. Although there are different types of intrusion detection systems, all these systems suffer a common problem which is generating high volume of alerts and huge number of false positives. This drawback has become the main motivation for many research papers in IDS area. The aim of conducted research in the field is to propose different techniques to handle the alerts, reduce them and distinguish real attacks from false positives and low importance events.