Skip to content
Open access

Cybersecurity Threat Intelligence Using Machine Learning Classification Techniques

Aug 2026 · International Journal of Cyber Threat Intelligence and Secure Networking · Vol 3, pp. 32-40 · 0 citations

TL;DR

A machine learning approach to build a cybersecurity threat intelligence framework for effective multiclass intrusion detection, in which the Decision Tree classifier is used, which beats state-of-the-art deep learning and ML approaches in terms of performance, execution time, and computational complexity.

Abstract

New attacks are getting smarter and more sophisticated, so the old signature-based intrusion detection and prevention systems can't find them. This work proposes a machine learning approach to build a cybersecurity threat intelligence framework for effective multiclass intrusion detection, in which the Decision Tree classifier is used. The CICIDS2017 benchmark dataset, which contains both benign network traffic and several types of cyberattacks, is used to build and test the suggested model. The goal of the preparation process is to enhance classification performance by cleaning and separating data, utilizing Standard Scaler to scale features, and SMOTE to balance classes. Metrics like as recall, accuracy, precision, F1-score, confusion matrix, and ROC curve are used to test the Decision Tree model. An impressive 99.91% accuracy (ACC) rate, 97.79% precision (PRE), 97.08% recall (REC), 97.41% F1-score (F1), and 0.99 AUC were revealed by the experiment's outcomes. The suggested method beats state-of-the-art deep learning and ML approaches in terms of performance, execution time, and computational complexity. The results show that the suggested design is a reliable, efficient, and lightweight way to find cyber security threats and IDR apps with intelligence.

Read PDF

Similar papers

Open access 2026

AI-DRIVEN THREAT DETECTION USING DATA SCIENCE: A COMPARATIVE STUDY OF MACHINE LEARNING MODELS ON CYBERSECURITY DATASETS

They originate from the rapid rise of cyber threats such as malware, phishing, ransomware, denial of service, and unauthorised network intrusion, which have proven to be so difficult to tackle that traditional security measures can hardly deal with the issue. Signature-based intrusion detection system techniques in par...

Praveen Kumar Reddy Gouni · 0 citations
Aug 2026

AI-Based Cybersecurity Threat Detection Using Machine Learning

A multi-layered intelligent detection system that unites supervised learning, unsupervised anomaly analysis, and ensemble decision strategies to identify network intrusions, malicious software activity, and stealthy advanced persistent threats in near real time is introduced.

Ameen Pasha.A · 0 citations
Open access Sep 2026

An Ensemble Machine Learning Based Cybersecurity IntrusionDetection System (C-IDS)

An essential component of network security is intrusion detection, which shields computer systems against attacks and illegal access. Traditional intrusion detection systems (IDS) rely on signature-based detection, which limits their ability to detect unknown complex threats. Machine learning-based methods have demonst...

A. Ilyas, Muhammad Faisal Laiq Siddiqui, Farheen Siddiqui et al. · 0 citations
Open access Aug 2026

Predictive Models for Cybersecurity in Smart Cities Network Using NSL-KDD Dataset

Smart Cities increasingly rely on interconnected digital infrastructures and Internet of Things (IoT) systems, which expand the attack surface and create new cybersecurity challenges. Traditional intrusion detection systems (IDS) based on signatures and rules are limited in scalability and adaptability against zero-day...

Tonatiuh Guadalupe, Nava-Razon, Francisco Salcedo-Arancibia et al. · 0 citations
Open access Sep 2026

Enhanced Intrusion Detection System (IDS) Using Machine Learning

The findings support the adoption of hybrid IDS architectures as a balanced and practical solution that enhances detection capability, adaptability, and reliability in evolving cyber threat landscapes.

Bang-Chen Yu · 0 citations
Open access Aug 2026

Application of C4.5 Decision Tree Algorithm for Detecting Cyber Attacks Using IDS

This work constructs a web-based Intrusion Detection System prototype by training an entropy-based Decision Tree classifier, conceptually grounded in the C4.5 framework, on the NSL-KDD benchmark.

Daniel Erick Witopo, Hartana Wijaya · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.