Sep 2026· Technologique: A Global Journal on Technological Developments and Scientific Innovations· 0 citations
TL;DR
The findings support the adoption of hybrid IDS architectures as a balanced and practical solution that enhances detection capability, adaptability, and reliability in evolving cyber threat landscapes.
Abstract
This study investigates the development and evaluation of a hybrid Intrusion Detection System (IDS) that integrates rule-based detection with machine learning (ML) techniques to address the limitations of standalone approaches in modern cybersecurity environments. Guided by a Design Science Research framework, the study utilized two benchmark datasets, KDD Cup 1999 and CICIDS2017, representing classical and contemporary network traffic conditions. Three ML models, which are Logistic Regression, Random Forest, and XGBoost, were implemented and compared alongside a traditional rule-based IDS. A hybrid model combining rule-based filtering and XGBoost classification was subsequently developed. Results indicate that while rule-based IDS perform adequately in structured environments, their effectiveness significantly declines in complex and imbalanced datasets. Machine learning models, particularly ensemble methods, achieved superior performance across all metrics, with XGBoost demonstrating the highest overall accuracy. The hybrid IDS achieved consistently high recall rates, indicating strong capability in detecting both known and previously unseen attacks while maintaining interpretability through rule-based components. Statis tical validation confirmed that performance improvements of the hybrid model are significant and robust. The findings support the adoption of hybrid IDS architectures as a balanced and practical solution that enhances detection capability, adaptability, and reliability in evolving cyber threat landscapes.
The findings indicate that the RF–SVM hybrid model provides an effective and scalable solution for real-time intrusion detection in modern cybersecurity environments.
Esther J., Grace Phiri, Arockia Venice J.· International Journal of Dat...· 0 citations
An essential component of network security is intrusion detection, which shields computer systems against attacks and illegal access. Traditional intrusion detection systems (IDS) rely on signature-based detection, which limits their ability to detect unknown complex threats. Machine learning-based methods have demonst...
A. Ilyas, Muhammad Faisal Laiq Siddiqui, Farheen Siddiqui et al.· Journal of information commu...· 0 citations
Intrusion Detection Systems (IDS) are essential elements of contemporary cyber security frameworks, intended to identify unauthorised access and nefarious activity within networks and computer systems. This survey examines the classification of IDS technologies, methodologies, and approaches, emphasising the benefits...
B. V. Yelikar, Jawed Sharfuzama Khan, A. Kanade et al.· International journal of com...· 0 citations
Security researchers rely heavily on Network Intrusion Detection Systems (NIDS) to keep an eye on network traffic and notify administrators of any suspicious activities. The purpose of this paper is to offer a comprehensive overview of intrusion detection systems (IDS), including the following topics: fundamentals, kin...
Madhav Sharma· International Journal of Cyb...· 0 citations
The increasing complexity of cyber threats has strengthened the need for adaptive network intrusion detection systems (IDS). This systematic literature review (SLR) synthesizes nine peer-reviewed studies published from 2024 to 2026 on deep learning (DL)-based network anomaly detection. The review follows a PRISMA 2020-...
A. Havy, Muhammad Faishol Amrulloh· Jurnal Riset Informatika· 0 citations
We use cookies to run the site and, with your consent, for analytics and to show ads.
See our Cookie Policy.