Network event classification for security of IT infrastructure

被引:0
|
作者
Arora, Deepali [1 ]
Agathoklis, Panajotis [1 ]
Loftier, Alex [2 ]
机构
[1] Univ Victoria, Dept Elect & Comp Engn, Victoria, BC, Canada
[2] TELUS Commun Inc, CSO, Vancouver, BC, Canada
来源
2018 32ND INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS WORKSHOPS (WAINA) | 2018年
基金
加拿大自然科学与工程研究理事会;
关键词
IoT; Machine Learning; Event Classification; Classification; Clustering;
D O I
10.1109/WAINA.2018.00085
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The number of devices connected over the Internet are expected to grow tremendously over the next few years. Maintaining secure communications between these network-enabled devices would be a major challenge. By carefully examining the events generated by these devices it is expected to gain some insights into their behavior and identifying if a device has been compromised. One of the major challenges in classifying the events generated by these devices is the inconsistencies in the data formats of these events and the separators between them. The approach presented in this paper is based on identifying and grouping similar events generated by these devices using an Agglomerative Hierarchical Clustering technique. To deal with the inconsistencies of formats and delimiters, some data pre-processing was used. The methodology proposed in this study was successful in identifying events stored in fifteen data files tested for analysis. The results indicate that the combination of text processing techniques in conjunction with machine learning based unsupervised learning offers promising alternatives in separating events generated by the network-enabled devices and, thus, facilitating a better understanding of their behavior and identifying potential security breaches.
引用
收藏
页码:187 / 192
页数:6
相关论文
共 50 条
  • [31] A Security framework for Wireless Network based on Public Key Infrastructure
    Tan, Wuzheng
    Yang, Maojiang
    Ye, Feng
    Ren, Wei
    2009 ISECS INTERNATIONAL COLLOQUIUM ON COMPUTING, COMMUNICATION, CONTROL, AND MANAGEMENT, VOL II, 2009, : 567 - 570
  • [32] Method for anomaly detection in network security event stream
    Li, Run-Heng
    Jia, Yan
    Tongxin Xuebao/Journal on Communications, 2009, 30 (12): : 27 - 35
  • [33] New approach for threat classification and security risk estimations based on security event management
    Sancho, Jose Carlos
    Caro, Andres
    avila, Mar
    Bravo, Alberto
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2020, 113 : 488 - 505
  • [34] Temporal and spatial distributed event correlation for network security
    Jiang, GF
    Cybenko, G
    PROCEEDINGS OF THE 2004 AMERICAN CONTROL CONFERENCE, VOLS 1-6, 2004, : 996 - 1001
  • [35] Preprocessor for Complex Event Processing System in Network Security
    Jayan, Keerthi
    Rajan, Archana K.
    2014 FOURTH INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING AND COMMUNICATIONS (ICACC), 2014, : 187 - 189
  • [36] Graph-based Event Classification in Grid Security Gateways
    Obert, James
    Chavez, Adrian
    2019 SECOND INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE FOR INDUSTRIES (AI4I 2019), 2019, : 63 - 66
  • [37] Classification of Network Traffic Using Fuzzy Clustering for Network Security
    Fries, Terrence P.
    ADVANCES IN DATA MINING: APPLICATIONS AND THEORETICAL ASPECTS, ICDM 2017, 2017, 10357 : 278 - 285
  • [38] Network security situation assessment with network attack behavior classification
    Yang, Hongyu
    Zhang, Zixin
    Xie, Lixia
    Zhang, Liang
    INTERNATIONAL JOURNAL OF INTELLIGENT SYSTEMS, 2022, 37 (10) : 6909 - 6927
  • [39] Applicability Analysis and Classification in Network System Security
    Luo Zhuojun
    INTELLIGENCE COMPUTATION AND EVOLUTIONARY COMPUTATION, 2013, 180 : 837 - 840
  • [40] A Method of Network Access Control for Ensuring Network Infrastructure Security Based on Severing Superfluous Network Connectivity
    Shilova, A. D.
    Vorob'eva, A. A.
    AUTOMATIC CONTROL AND COMPUTER SCIENCES, 2023, 57 (08) : 1116 - 1125