Growing hierarchical self-organizing map for alarm filtering in network intrusion detection systems

被引:0
|
作者
Faour, Ahmad [1 ]
Leray, Philippe [1 ]
Eter, Bassam [2 ]
机构
[1] INSA Rouen, Lab LITIS, EA 4051, Rouen, France
[2] Lebanese Univ, Beirut, Lebanon
关键词
D O I
10.1007/978-1-4020-6270-4_58
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
It is a well-known problem that intrusion detection systems overload their human operators by triggering thousands of alarms per day. This paper presents a new approach for handling intrusion detection alarms more efficiently. Self-Organizing Map (SOM) and Growing Hierarchical Self-Organizing Map (GHSOM) are used to discover interest patterns, signs of potential real attack scenarios aiming each machine in the network. GHSOM addresses two main limits of SOM which are caused, on the one hand, by the static architecture of this model, as well as, on the other hand, by the limited capabilities for the representation of hierarchical relations of the data. The experiments conducted on several logs extracted from the SNORT NIDS, confirm that the GHSOM can form an adaptive architecture, which grows in size and depth during its training process, thus to unfold the hierarchical structure of the analyzed logs of alerts
引用
收藏
页码:631 / 631
页数:1
相关论文
共 50 条
  • [31] Growing hierarchical self-organizing map computation approach for clustering in cellular manufacturing
    Chattopadhyay, Manojit
    Das, Nityananda
    Dan, Pranab K.
    Mazumdar, Sitanath
    JOURNAL OF INDUSTRIAL AND PRODUCTION ENGINEERING, 2012, 29 (03) : 181 - 192
  • [32] Growing Hierarchical Probabilistic Self-Organizing Graphs
    Lopez-Rubio, Ezequiel
    Jose Palomo, Esteban
    IEEE TRANSACTIONS ON NEURAL NETWORKS, 2011, 22 (07): : 997 - 1008
  • [33] Fuzzy Growing Hierarchical Self-Organizing Networks
    Barreto-Sanz, Miguel
    Perez-Uribe, Andres
    Pena-Reyes, Carlos-Andres
    Tomassini, Marco
    ARTIFICIAL NEURAL NETWORKS - ICANN 2008, PT II, 2008, 5164 : 713 - +
  • [34] Reliable hierarchical clustering with the self-organizing map
    Samsonova, EV
    Bäck, T
    Kok, JN
    IJzerman, AP
    ADVANCES IN INTELLIGENT DATA ANALYSIS VI, PROCEEDINGS, 2005, 3646 : 385 - 396
  • [35] Direct Batch Growth Hierarchical Self-Organizing Mapping Based on Statistics for Efficient Network Intrusion Detection
    Qu, Xiaofei
    Yang, Lin
    Guo, Kai
    Sun, Meng
    Ma, Linru
    Feng, Tao
    Ren, Shuangyin
    Li, Kechao
    Ma, Xin
    IEEE ACCESS, 2020, 8 : 42251 - 42260
  • [36] Robust Growing Hierarchical Self Organizing Map
    Moreno, S
    Allende, H
    Rogel, C
    Salas, R
    COMPUTATIONAL INTELLIGENCE AND BIOINSPIRED SYSTEMS, PROCEEDINGS, 2005, 3512 : 341 - 348
  • [37] Application of Self-Organizing Feature Map Neural Network Based on K-means Clustering in Network Intrusion Detection
    Tan, Ling
    Li, Chong
    Xia, Jingming
    Cao, Jun
    CMC-COMPUTERS MATERIALS & CONTINUA, 2019, 61 (01): : 275 - 288
  • [38] Pattern discovery from time series using growing hierarchical self-organizing map
    Liu, Shiyuan
    Lu, Li
    Liao, Guanglan
    Xuan, Jianping
    NEURAL INFORMATION PROCESSING, PT 1, PROCEEDINGS, 2006, 4232 : 1030 - 1037
  • [39] The growing hierarchical self-organizing map: Exploratory analysis of high-dimensional data
    Rauber, A
    Merkl, D
    Dittenbach, M
    IEEE TRANSACTIONS ON NEURAL NETWORKS, 2002, 13 (06): : 1331 - 1341
  • [40] SELF-ORGANIZING HIERARCHICAL MODULAR SYSTEMS
    SCARPETTA, G
    SIMONCELLI, G
    LECTURE NOTES IN COMPUTER SCIENCE, 1987, 253 : 87 - 119