CAMLPAD: Cybersecurity Autonomous Machine Learning Platform for Anomaly Detection

被引:9
|
作者
Hariharan, Ayush [1 ]
Gupta, Ankit [1 ]
Pal, Trisha [1 ]
机构
[1] Blue Cloak LLC, Sterling, VA 20164 USA
关键词
Machine learning; Cybersecurity; Anomaly detection; Clustering; Visualization; INTRUSION DETECTION; DETECTION FRAMEWORK; SYSTEM;
D O I
10.1007/978-3-030-39442-4_52
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
As machine learning and cybersecurity continue to explode in the context of the digital ecosystem, the complexity of cybersecurity data combined with complicated and evasive machine learning algorithms leads to vast difficulties in designing an end-to-end system for intelligent, automatic anomaly classification. On the other hand, traditional systems use elementary statistics techniques and are often inaccurate, leading to weak centralized data analysis platforms. In this paper, we propose a novel system that addresses these two problems, titled CAMLPAD, for Cybersecurity Autonomous Machine Learning Platform for Anomaly Detection. The CAMLPAD system's streamlined, holistic approach begins with retrieving a multitude of different species of cybersecurity data in real-time using elasticsearch, then running several machine learning algorithms, namely Isolation Forest, Histogram-Based Outlier Score (HBOS), Cluster-Based Local Outlier Factor (CBLOF), and K-Means Clustering, to process the data. Next, the calculated anomalies are visualized using Kibana and are assigned an outlier score, which serves as an indicator for whether an alert should be sent to the system administrator that there are potential anomalies in the network. After comprehensive testing of our platform in a simulated environment, the CAMLPAD system achieved an adjusted rand score of 95%, exhibiting the reliable accuracy and precision of the system. All in all, the CAMLPAD system provides an accurate, streamlined approach to real-time cybersecurity anomaly detection, delivering a novel solution that has the potential to revolutionize the cybersecurity sector.
引用
收藏
页码:705 / 720
页数:16
相关论文
共 50 条
  • [21] Machine learning-based anomaly detection and prediction in commercial aircraft using autonomous surveillance data
    Xia, Tian
    Zhou, Lanju
    Ahmad, Khalil
    PLOS ONE, 2025, 20 (02):
  • [22] Cybersecurity Attack Detection Model, Using Machine Learning Techniques
    Avci, Isa
    Koca, Murat
    ACTA POLYTECHNICA HUNGARICA, 2023, 20 (07) : 29 - 44
  • [23] Leveraging machine learning for enhanced cybersecurity: an intrusion detection system
    Sahib, Wurood Mahdi
    Alhuseen, Zainab Ali Abd
    Saeedi, Iman Dakhil Idan
    Abdulkadhem, Abdulkadhem A.
    Ahmed, Ali
    SERVICE ORIENTED COMPUTING AND APPLICATIONS, 2024,
  • [24] Autonomous Anomaly Detection
    Gu, Xiaowei
    Angelov, Plamen
    PROCEEDINGS OF THE 2017 EVOLVING AND ADAPTIVE INTELLIGENT SYSTEMS (EAIS), 2017,
  • [25] Authentic Learning on Machine Learning for Cybersecurity
    Lo, Dan Chia-Tien
    Shahriar, Hossain
    Qian, Kai
    Whitman, Michael
    Wu, Fan
    Thomas, Cassandra
    PROCEEDINGS OF THE 54TH ACM TECHNICAL SYMPOSIUM ON COMPUTER SCIENCE EDUCATION, VOL 2, SIGCSE 2023, 2023, : 1299 - 1299
  • [26] Anomaly modelling in machine learning based navigation system of autonomous vehicles
    Eshraghi, Hossein
    Majidi, Babak
    Movaghar, Ali
    2020 6TH IRANIAN CONFERENCE ON SIGNAL PROCESSING AND INTELLIGENT SYSTEMS (ICSPIS), 2020,
  • [27] The Promise of Machine Learning in Cybersecurity
    Fraley, James B.
    Cannady, James
    SOUTHEASTCON 2017, 2017,
  • [28] Efficient Distributed Preprocessing Model for Machine Learning-Based Anomaly Detection over Large-Scale Cybersecurity Datasets
    Larriva-Novo, Xavier
    Vega-Barbas, Mario
    Villagra, Victor A.
    Rivera, Diego
    Alvarez-Campana, Manuel
    Berrocal, Julio
    APPLIED SCIENCES-BASEL, 2020, 10 (10):
  • [29] Machine learning-based identification of cybersecurity threats affecting autonomous vehicle systems
    Onur, Furkan
    Gonen, Serkan
    Bariskan, Mehmet Ali
    Kubat, Cemallettin
    Tunay, Mustafa
    Yilmaz, Ercan Nurcan
    COMPUTERS & INDUSTRIAL ENGINEERING, 2024, 190
  • [30] Machine learning in cybersecurity: A review
    Handa, Anand
    Sharma, Ashu
    Shukla, Sandeep K.
    WILEY INTERDISCIPLINARY REVIEWS-DATA MINING AND KNOWLEDGE DISCOVERY, 2019, 9 (04)