Enhancing profiles for anomaly detection using time granularities

被引:0
|
作者
Li, Yingjiu [1 ]
Wu, Ningning [1 ]
Sean Wang, X. [1 ]
Jajodia, Sushil [1 ]
机构
[1] Ctr. for Secure Information Systems, George Mason University, Fairfax, VA 22030, United States
关键词
Algorithms - Data reduction - Network protocols - Security of data;
D O I
10.3233/JCS-2002-101-206
中图分类号
学科分类号
摘要
Recently, association rules have been used to generate profiles of normal behavior for anomaly detection. However, the time factor (especially in terms of multiple time granularities) has not been utilized extensively in generation of these profiles. In reality, user behavior during different time intervals may be very different. For example, the normal number and duration of FTP connections may vary from working hours to midnight, from business day to weekend or holiday. Furthermore, these variations may depend on the day of the month or the week. This paper proposes to build profiles using temporal association rules in terms of multiple time granularities, and describes algorithms to discover these profiles. Because multiple time granularities are used for the profile generation, the proposed method is more flexible and precise than previous methods that use fixed partition of time intervals. Finally, the paper describes an experiment and its preliminary result on TCP-dump data.
引用
收藏
页码:137 / 157
相关论文
共 50 条
  • [1] Hyperspectral Anomaly Detection Using Attribute Profiles
    Taghipour, Ashkan
    Ghassemian, Hassan
    IEEE GEOSCIENCE AND REMOTE SENSING LETTERS, 2017, 14 (07) : 1136 - 1140
  • [2] Enhancing anomaly detection in electrical consumption profiles through computational intelligence
    Luna-Romero, Santiago Felipe
    Serrano-Guerrero, Xavier
    de Souza, Mauren Abreu
    Escriva-Escriva, Guillermo
    ENERGY REPORTS, 2024, 11 : 951 - 962
  • [3] ENHANCING ANOMALY DETECTION USING TEMPORAL PATTERN DISCOVERY
    Jakkula, Vikramaditya R.
    Crandall, Aaron S.
    Cook, Diane J.
    ADVANCED INTELLIGENT ENVIRONMENTS, 2009, : 175 - 194
  • [4] Enhancing Anomaly Detection Methods for Energy Time Series Using Latent Space Data Representations
    Turowski, Marian
    Heidrich, Benedikt
    Phipps, Kaleb
    Schmieder, Kai
    Neumann, Oliver
    Mikut, Ralf
    Hagenmeyer, Veit
    PROCEEDINGS OF THE 2022 THE THIRTEENTH ACM INTERNATIONAL CONFERENCE ON FUTURE ENERGY SYSTEMS, E-ENERGY 2022, 2022, : 208 - 227
  • [5] Enhancing Network Anomaly Detection Using Graph Neural Networks
    Marfo, William
    Tosh, Deepak K.
    Moore, Shirley V.
    2024 22ND MEDITERRANEAN COMMUNICATION AND COMPUTER NETWORKING CONFERENCE, MEDCOMNET 2024, 2024,
  • [6] Enhancing structural anomaly detection using a bounded autoregressive component
    Xin, Zhanwen
    Goulet, James -A.
    MECHANICAL SYSTEMS AND SIGNAL PROCESSING, 2024, 212
  • [7] Anomaly Detection Using Dynamic Time Warping
    Diab, Diab M.
    AsSadhan, Basil
    Binsalleeh, Hamad
    Lambotharan, Sangarapillai
    Kyriakopoulos, Konstantinos G.
    Ghafir, Ibrahim
    2019 22ND IEEE INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE AND ENGINEERING (IEEE CSE 2019) AND 17TH IEEE INTERNATIONAL CONFERENCE ON EMBEDDED AND UBIQUITOUS COMPUTING (IEEE EUC 2019), 2019, : 199 - 204
  • [8] Real time anomaly detection using Ensembles
    Reddy, R. Ravinder
    Ramadevi, Y.
    Sunitha, K. V. N.
    2014 INTERNATIONAL CONFERENCE ON INFORMATION SCIENCE AND APPLICATIONS (ICISA), 2014,
  • [9] Enhancing Anomaly Detection Performance and Acceleration
    Saiku, Ryo
    Sato, Junya
    Yamada, Takayoshi
    Ito, Kazuaki
    IEEJ JOURNAL OF INDUSTRY APPLICATIONS, 2022, 11 (04) : 616 - 622
  • [10] Enhancing Time Series Anomaly Detection: A Knowledge Distillation Approach with Image Transformation
    Park, Haiwoong
    Jang, Hyeryung
    SENSORS, 2024, 24 (24)