期刊论文详细信息
American Journal of Applied Sciences
MULTI SCALE TIME SERIES PREDICTION FOR INTRUSION DETECTION | Science Publications
K. Duraiswamy1  G. Palanivel1 
关键词: Anomaly Detection;    Two-Stage Neural Network Predictor;    Multi-Resolution Analysis;   
DOI  :  10.3844/ajassp.2014.1405.1411
学科分类:自然科学(综合)
来源: Science Publications
PDF
【 摘 要 】

We propose an anomaly-based network intrusion detection system, which analyzes traffic features to detect anomalies. The proposed system can be used both in online as well as off-line mode for detecting deviations from the expected behavior. Although our approach uses network packet or flow data, it is general enough to be adaptable for use with any other network variable, which may be used as a signal for anomaly detection. It differs from most existing approaches in its use of wavelet transform for generating different time scales for a signal and using these scales as an input to a two-stage neural network predictor. The predictor predicts the expected signal value and labels considerable deviations from this value as anomalies. The primary contribution of our work would be to empirically evaluate the effectiveness of multi resolution analysis as an input to neural network prediction engine specifically for the purpose of intrusion detection. The role of Intrusion Detection Systems (IDSs), as special-purpose devices to detect anomalies and attacks in a network, is becoming more important. First, anomaly-based methods cannot achieve an outstanding performance without a comprehensive labeled and up-to-date training set with all different attack types, which is very costly and time-consuming to create if not impossible. Second, efficient and effective fusion of several detection technologies becomes a big challenge for building an operational hybrid intrusion detection system.

【 授权许可】

Unknown   

【 预 览 】
附件列表
Files Size Format View
RO201911300719674ZK.pdf 296KB PDF download
  文献评价指标  
  下载次数:23次 浏览次数:51次