NetFlow Anomaly Detection Though Parallel Cluster Density Analysis in Continuous Time-Series

被引:2
|
作者
Flanagan, Kieran [1 ,2 ]
Fallon, Enda [1 ]
Connolly, Paul [2 ]
Awad, Abir [3 ]
机构
[1] Athlone Inst Technol, Software Res Inst, Athlone, Ireland
[2] NPD Grp Inc, IDA Business Pk, Athlone, Westmeath, Ireland
[3] Univ South Wales, Fac Comp Engn & Sci, Treforest, Wales
关键词
Anomaly detection; NetFlow; Clustering; Density analysis;
D O I
10.1007/978-3-319-61382-6_18
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The increase in malicious network based attacks has resulted in a growing interest in network anomaly detection. The ability to detect unauthorized or malicious activity on a network is of importance to any organization. With the increase in novel attacks, anomaly detection techniques can be more successful in detecting unknown malicious activity in comparison to traditional signature based methods. However, in a real-world environment, there are many variables that cannot be simulated. This paper proposes an architecture where parallel clustering algorithms work concurrently in order to detect abnormalities that may be lost while traversing over time-series windows. The presented results describe the NetFlow activity of the NPD Group, Inc. over a 24-hour period. The presented results contain real-world anomalies that were detected.
引用
收藏
页码:221 / 232
页数:12
相关论文
共 50 条
  • [21] Deep Learning for Anomaly Detection in Time-Series Data: Review, Analysis, and Guidelines
    Choi, Kukjin
    Yi, Jihun
    Park, Changhwa
    Yoon, Sungroh
    IEEE ACCESS, 2021, 9 : 120043 - 120065
  • [22] Cluster analysis of biomedical image time-series
    Wismüller, A
    Lange, O
    Dersch, DR
    Leinsinger, GL
    Hahn, K
    Pütz, B
    Auer, D
    INTERNATIONAL JOURNAL OF COMPUTER VISION, 2002, 46 (02) : 103 - 128
  • [23] CLUSTER-ANALYSIS OF RESPIRATORY TIME-SERIES
    ADAMS, JM
    ATTINGER, EO
    ATTINGER, FM
    BIOLOGICAL CYBERNETICS, 1978, 28 (04) : 183 - 190
  • [24] Cluster Analysis of Biomedical Image Time-Series
    Axel Wismüller
    Oliver Lange
    Dominik R. Dersch
    Gerda L. Leinsinger
    Klaus Hahn
    Benno Pütz
    Dorothee Auer
    International Journal of Computer Vision, 2002, 46 : 103 - 128
  • [25] CoRP: A Pattern-Based Anomaly Detection in Time-Series
    Ben Kraiem, Ines
    Ghozzi, Faiza
    Peninou, Andre
    Teste, Olivier
    ENTERPRISE INFORMATION SYSTEMS (ICEIS 2019), 2020, 378 : 424 - 442
  • [26] Spacecraft Time-Series Anomaly Detection Using Transfer Learning
    Baireddy, Sriram
    Desai, Sundip R.
    Mathieson, James L.
    Foster, Richard H.
    Chan, Moses W.
    Comer, Mary L.
    Delp, Edward J.
    2021 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION WORKSHOPS, CVPRW 2021, 2021, : 1951 - 1960
  • [27] Reconstructive reservoir computing for anomaly detection in time-series signals
    Kato, Junya
    Tanaka, Gouhei
    Nakane, Ryosho
    Hirose, Akira
    IEICE NONLINEAR THEORY AND ITS APPLICATIONS, 2024, 15 (01): : 183 - 204
  • [28] A Modified DBSCAN Algorithm for Anomaly Detection in Time-series Data with
    Jain, Praphula
    Bajpai, Mani Shankar
    Pamula, Rajendra
    INTERNATIONAL ARAB JOURNAL OF INFORMATION TECHNOLOGY, 2022, 19 (01) : 23 - 28
  • [29] Deep Quantile Regression for Unsupervised Anomaly Detection in Time-Series
    Tambuwal A.I.
    Neagu D.
    SN Computer Science, 2021, 2 (6)
  • [30] Anomaly Detection from Multivariate Time-Series with Sparse Representation
    Takeishi, Naoya
    Yairi, Takehisa
    2014 IEEE INTERNATIONAL CONFERENCE ON SYSTEMS, MAN AND CYBERNETICS (SMC), 2014, : 2651 - 2656