A new data normalization method for unsupervised anomaly intrusion detection

被引:0
|
作者
Longzheng CAIJian CHENYun KETao CHENZhigang LI Engineering and Commerce CollegeSouthCentral University for NationalitiesWuhan China Guangdong Institute of Science and TechnologyZhuhai China [1 ,2 ,1 ,1 ,1 ,1 ,430065 ,2 ,519090 ]
机构
关键词
D O I
暂无
中图分类号
学科分类号
摘要
Unsupervised anomaly detection can detect attacks without the need for clean or labeled training data.This paper studies the application of clustering to unsupervised anomaly detection(ACUAD).Data records are mapped to a feature space.Anomalies are detected by determining which points lie in the sparse regions of the feature space.A critical element for this method to be effective is the definition of the distance function between data records.We propose a unified normalization distance framework for records with numeric and nominal features mixed data.A heuristic method that computes the distance for nominal features is proposed,taking advantage of an important characteristic of nominal features-their probability distribution.Then,robust methods are proposed for mapping numeric features and computing their distance,these being able to tolerate the impact of the value difference in scale and diversification among features,and outliers introduced by intrusions.Empirical experiments with the KDD 1999 dataset showed that ACUAD can detect intrusions with relatively low false alarm rates compared with other approaches.
引用
收藏
页码:778 / 784
页数:7
相关论文
共 50 条
  • [41] Unsupervised Feature Selection Method for Intrusion Detection System
    Ambusaidi, Mohammed A.
    He, Xiangjian
    Nanda, Priyadarsi
    2015 IEEE TRUSTCOM/BIGDATASE/ISPA, VOL 1, 2015, : 295 - 301
  • [42] Into the Unknown: Unsupervised Machine Learning Algorithms for Anomaly-Based Intrusion Detection
    Zoppi, Tommaso
    Ceccarelli, Andrea
    Bondavalli, Andrea
    2020 50TH ANNUAL IEEE-IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS-SUPPLEMENTAL VOLUME (DSN-S), 2020, : 81 - 81
  • [43] Anomaly intrusion detection based on clustering a data stream
    Oh, Sang-Hyun
    Kang, Jin-Suk
    Bytin, Yung-Cheol
    Jeong, Taikyeong T.
    Lee, Won-Suk
    INFORMATION SECURITY, PROCEEDINGS, 2006, 4176 : 415 - 426
  • [44] The Complex Method of Intrusion Detection Based on Anomaly Detection and Misuse Detection
    Radivilova, Tamara
    Kirichenko, Lyudmyla
    Alghawli, Abed Saif
    Ilkov, Andrii
    Tawalbeh, Maxim
    Zinchenko, Petro
    2020 IEEE 11TH INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS, SERVICES AND TECHNOLOGIES (DESSERT): IOT, BIG DATA AND AI FOR A SAFE & SECURE WORLD AND INDUSTRY 4.0, 2020, : 133 - 137
  • [45] Unsupervised Anomaly Detection Based on Data Augmentation and Mixing
    Ishida, Naoya
    Nagatsu, Yuki
    Hashimoto, Hideki
    IECON 2020: THE 46TH ANNUAL CONFERENCE OF THE IEEE INDUSTRIAL ELECTRONICS SOCIETY, 2020, : 529 - 533
  • [46] Unsupervised detection of contextual anomaly in remotely sensed data
    Liu, Qi
    Klucik, Rudy
    Chen, Chao
    Grant, Glenn
    Gallaher, David
    Lv, Qin
    Shang, Li
    REMOTE SENSING OF ENVIRONMENT, 2017, 202 : 75 - 87
  • [47] Explainable unsupervised anomaly detection for healthcare insurance data
    Hannes De Meulemeester
    Frank De Smet
    Johan van Dorst
    Elise Derroitte
    Bart De Moor
    BMC Medical Informatics and Decision Making, 25 (1)
  • [48] An outlier ensemble for unsupervised anomaly detection in honeypots data
    Boukela, Lynda
    Zhang, Gongxuan
    Bouzefrane, Samia
    Zhou, Junlong
    INTELLIGENT DATA ANALYSIS, 2020, 24 (04) : 743 - 758
  • [49] Unsupervised Anomaly Detection of Class Imbalanced Cognition Data Using an Iterative Cleaning Method
    Kennedy, Robert K. L.
    Salekshahrezaee, Zahra
    Khoshgoftaar, Taghi M.
    2023 IEEE 24TH INTERNATIONAL CONFERENCE ON INFORMATION REUSE AND INTEGRATION FOR DATA SCIENCE, IRI, 2023, : 303 - 308
  • [50] Unsupervised Anomaly Detection for Conveyor Temperature SCADA Data
    Wodecki, Jacek
    Stefaniak, Pawel
    Polak, Marta
    Zimroz, Radoslaw
    ADVANCES IN CONDITION MONITORING OF MACHINERY IN NON-STATIONARY OPERATIONS, CMMNO 2016, 2018, 9