Abstract:
Network anomaly detection is an important and rapidly growing area. In this paper, we propose a new network anomaly detection method based on the probability distribution...Show MoreMetadata
Abstract:
Network anomaly detection is an important and rapidly growing area. In this paper, we propose a new network anomaly detection method based on the probability distributions of header information. The distances between the distributions of headers are calculated to reflect the main characteristics of the network. These are calculated using Greedy algorithm which eliminates some requirements associated with Kullback-Leibler divergence such as having the same rank of the probability distributions. Then, Support Vector Machine classifier is used in the detection phase to reduce false alarm rates and to make the system adaptive for different networks. This algorithm is tested on the real data collected from Boğaziçi University network and MIT Darpa 2000 dataset.
Date of Conference: 24-26 April 2019
Date Added to IEEE Xplore: 22 August 2019
ISBN Information:
Print on Demand(PoD) ISSN: 2165-0608