Browse wiki

From Navigators

Jump to: navigation, search
Publication:Secrypt19 lads
Abstract Network anomaly detection using NetFlow ha Network anomaly detection using NetFlow has been widely studied during the last decade. NetFlow providesthe ability to collect network traffic attributes (e.g., IP source, IP destination, source port, destination port,protocol) and allows the use of association rule mining to extract the flows that have caused a malicious event.Despite of all the developments in network anomaly detection, the most popular procedure to detect non-conformity patterns in network traffic is still manual inspection during the period under analysis (e.g., visualanalysis of plots, identification of variations in the number of bytes, packets, flows). This paper presents a LiveAnomaly Detection System (LADS) based on One class Support Vector Machine (One-class SVM) to detecttraffic anomalies. Experiments have been conducted using a valid data-set containing over 1.4 million packets(captured using NetFlow v5 and v9) that build models with one and several features in order to identify theapproach that most accurately detects traffic anomalies in our system. A multi-featured approach that restrictsthe analysis to one IP address and extends it in terms of samples (valid and invalid ones) is considered as apromising approach in terms of accuracy of the detected malicious instances curacy of the detected malicious instances
Author Gustavo Gonzalez-Granadillo + , Rodrigo Diaz + , Ibéria Medeiros + , Susana Gonzalez-Zarzosa + , Dawid Machnicki +
Booktitle In Proceedings of the Workshop on Security and Cryptography (with SECRYPT 2019)  +
Key Secrypt19 lads  +
Month jul  +
NumPubDate 2,019.07  +
Project Project:DiSIEM +
ResearchLine Fault and Intrusion Tolerance in Open Distributed Systems (FIT) +
Title LADS: A Live Anomaly Detection System based on Machine Learning Methods  +
Type inproceedings  +
Year 2019  +
Has improper value forThis property is a special property in this wiki. Url  +
Categories Publication  +
Modification dateThis property is a special property in this wiki. 18 September 2019 00:28:06  +
hide properties that link here 
  No properties link to this page.
 

 

Enter the name of the page to start browsing from.
Views
Personal tools
Toolbox
Navigators toolbox