A novel immune detector training method for network anomaly detection

被引:3
|
作者
Liu, Xiaowen [1 ]
Yang, Geying [1 ]
Wang, Lina [1 ]
Fu, Jie [1 ]
Wang, Qinghao [1 ]
机构
[1] Wuhan Univ, Sch Cyber Sci & Engn, Key Lab Aerosp Informat Secur & Trusted Comp, Minist Educ, Wuhan 430072, Hubei, Peoples R China
基金
中国国家自然科学基金;
关键词
Artificial immune system; Network anomaly detection; Feature selection; Hierarchical clustering; Monte Carlo algorithm; NEGATIVE SELECTION ALGORITHM; CLASSIFICATION; MODEL;
D O I
10.1007/s10489-024-05288-2
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The artificial immune system and network anomaly detection system are developed with common goals and principles considered. Moreover, artificial immune-based network anomaly detection can adaptively learn and dynamically detect threats. However, existing immune recognition algorithms suffer from the curse of dimensionality, hole problems, and detector inefficiency tolerance. In this paper, we proposed a novel immune detector training mechanism for network anomaly detection. First, a hybrid filter embedded feature selection algorithm is designed to comprehensively evaluate features and select the optimal subset. Then, candidate detectors are generated based on self antigens, and the nonself region is represented using complementary space to circumvent the hole problem. Finally, considering the training efficiency during the evolution of the candidate detectors, an antigen clustering feature tree is constructed to rapidly index the tolerance objects. Furthermore, the algorithm considers the effect of the collaboration of multiple mature detectors on candidate detectors, and a Monte Carlo-based coverage estimation algorithm is designed to achieve more accurate and fine-grained maturation tolerance of candidate detectors. The theoretical analysis shows that the time complexity of our algorithm is significantly reduced. The experimental results show that our algorithm not only improves the detection accuracy but also reduces the time cost of detector training.
引用
收藏
页码:2009 / 2030
页数:22
相关论文
共 50 条
  • [1] A novel immune detector training method for network anomaly detection
    Xiaowen Liu
    Geying Yang
    Lina Wang
    Jie Fu
    Qinghao Wang
    Applied Intelligence, 2024, 54 : 2009 - 2030
  • [2] A novel immune detector model of linux process anomaly detection
    Tan Chengyu
    ADVANCED COMPUTER TECHNOLOGY, NEW EDUCATION, PROCEEDINGS, 2007, : 1336 - 1340
  • [3] A novel method for network anomaly detection using superstatistics
    Chen, Dong
    Hu, Hanping
    Chen, Jinaghang
    CISIS 2008: THE SECOND INTERNATIONAL CONFERENCE ON COMPLEX, INTELLIGENT AND SOFTWARE INTENSIVE SYSTEMS, PROCEEDINGS, 2008, : 595 - 598
  • [4] Anomaly Detection with Artificial Immune Network
    PENG Lingxi1
    2. School of Information
    Wuhan University Journal of Natural Sciences, 2007, (05) : 951 - 954
  • [5] A novel immune detection algorithm for anomaly detection
    Zhang, YJ
    2005 IEEE INTERNATIONAL SYMPOSIUM ON INTELLIGENT CONTROL & 13TH MEDITERRANEAN CONFERENCE ON CONTROL AND AUTOMATION, VOLS 1 AND 2, 2005, : 1441 - 1446
  • [6] Neural network based anomaly detection in computer networks: A novel training paradigm
    Sharafat, AR
    Rasti, M
    Yazdian, A
    COMPUTER APPLICATIONS IN INDUSTRY AND ENGINEERING, 2003, : 50 - 53
  • [7] Network fault detection: Classifier training method for anomaly fault detection in a production network using test network information
    Li, J
    Manikopoulos, C
    LCN 2002: 27TH ANNUAL IEEE CONFERENCE ON LOCAL COMPUTER NETWORKS, PROCEEDINGS, 2002, : 473 - 482
  • [8] Multisource Neighborhood Immune Detector Adaptive Model for Anomaly Detection
    Xi, Liang
    Wang, Rui-Dong
    Yao, Zhi-Yu
    Zhang, Feng-Bin
    IEEE TRANSACTIONS ON EVOLUTIONARY COMPUTATION, 2021, 25 (03) : 582 - 594
  • [9] Forward and Backward Inertial Anomaly Detector: A Novel Time Series Event Detection Method
    Lima, Janio
    Salles, Rebecca
    Porto, Fabio
    Coutinho, Rafaelli
    Alpis, Pedro
    Escobar, Luciana
    Pacitti, Esther
    Ogasawara, Eduardo
    2022 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2022,
  • [10] Network anomaly behavior detection using an adaptive multiplex detector
    Kim, Misun
    Kim, Minsoo
    Seo, JaeHyun
    COMPUTATIONAL SCIENCE AND ITS APPLICATIONS - ICCSA 2006, PT 3, 2006, 3982 : 154 - 162