Network-Traffic Anomaly Detection with Incremental Majority Learning

被引:0
|
作者
Huang, Shin-Ying [1 ]
Yu, Fang [2 ]
Tsaih, Rua-Huan [2 ]
Huang, Yennun [1 ]
机构
[1] Acad Sinica, Res Ctr Informat Technol Innovat, Taipei 115, Taiwan
[2] Natl Chengchi Univ, Dept Management Informat Syst, Taipei 11623, Taiwan
关键词
intrusion detection system; outlier detection; neural network incremental learning; REGRESSION; OUTLIERS;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Detecting anomaly behavior in large network traffic data has presented a great challenge in designing effective intrusion detection systems. We propose an adaptive model to learn majority patterns under a dynamic changing environment. We first propose unsupervised learning on data abstraction to extract essential features of samples. We then adopt incremental majority learning with iterative evolutions on fitting envelopes to characterize the majority of samples within moving windows. A network traffic sample is considered an anomaly if its abstract feature falls on the outside of the fitting envelope. We justify the effectiveness of the presented approach against 150000+ traffic samples from the NSL-KDD dataset in training and testing, demonstrating positive promise in detecting network attacks by identifying samples that have abnormal features.
引用
收藏
页数:8
相关论文
共 50 条
  • [31] Research on Multiple Classification Detection for Network Traffic Anomaly Based on Deep Learning
    Tong, HaiZhou
    2022 6TH INTERNATIONAL SYMPOSIUM ON COMPUTER SCIENCE AND INTELLIGENT CONTROL, ISCSIC, 2022, : 12 - 16
  • [32] Analysis of network traffic features for anomaly detection
    Iglesias, Felix
    Zseby, Tanja
    MACHINE LEARNING, 2015, 101 (1-3) : 59 - 84
  • [33] Network Anomaly Detection based on Traffic Prediction
    Wang, Fengyu
    Gong, Bin
    Hu, Yi
    Zhang, Ningbo
    2009 INTERNATIONAL CONFERENCE ON SCALABLE COMPUTING AND COMMUNICATIONS & EIGHTH INTERNATIONAL CONFERENCE ON EMBEDDED COMPUTING, 2009, : 449 - 454
  • [34] A BasisEvolution framework for network traffic anomaly detection
    Xia, Hui
    Fang, Bin
    Roughan, Matthew
    Cho, Kenjiro
    Tune, Paul
    COMPUTER NETWORKS, 2018, 135 : 15 - 31
  • [35] USING R FOR ANOMALY DETECTION IN NETWORK TRAFFIC
    Hock, Denis
    Kappes, Martin
    PROCEEDINGS OF THE FIFTH INTERNATIONAL CONFERENCE ON INTERNET TECHNOLOGIES AND APPLICATIONS (ITA 13), 2013, : 98 - 105
  • [36] Approach to anomaly traffic detection in a local network
    Wang, Xiu-Ying
    Xiao, Li-Zhong
    Shao, Zhi-Qing
    Journal of Donghua University (English Edition), 2009, 26 (06) : 656 - 661
  • [37] Analysis of network traffic features for anomaly detection
    Félix Iglesias
    Tanja Zseby
    Machine Learning, 2015, 101 : 59 - 84
  • [38] Promising Techniques for Anomaly Detection on Network Traffic
    Tian, Hui
    Liu, Jingtian
    Ding, Meimei
    COMPUTER SCIENCE AND INFORMATION SYSTEMS, 2017, 14 (03) : 597 - 609
  • [39] Forecasting the Distribution of Network Traffic for Anomaly Detection
    Callegari, Christian
    Giordano, Stefano
    Pagano, Michele
    Pepe, Teresa
    TRUSTCOM 2011: 2011 INTERNATIONAL JOINT CONFERENCE OF IEEE TRUSTCOM-11/IEEE ICESS-11/FCST-11, 2011, : 173 - 180
  • [40] Research on network traffic anomaly detection algorithm
    Lv, Jun
    Li, Tong
    Li, Xing
    2007 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS, VOLS 1-3, 2007, : 1097 - 1102