GARUDA: Gaussian dissimilarity measure for feature representation and anomaly detection in Internet of things

被引:54
|
作者
Aljawarneh, Shadi A. [1 ]
Vangipuram, Radhakrishna [2 ]
机构
[1] Jordan Univ Sci & Technol, Irbid, Jordan
[2] VNR Vignana Jyothi Inst Engn & Technol, Ctr Excellence Networks & Secur, Dept Informat Technol, Hyderabad, India
来源
JOURNAL OF SUPERCOMPUTING | 2020年 / 76卷 / 06期
关键词
Anomaly detection; Feature representation; Intrusion; Dimensionality; Clustering; Distance measure; INTRUSION-DETECTION; SIMILARITY MEASURE; FEATURE-SELECTION; ALGORITHM; NETWORKS; TRENDS;
D O I
10.1007/s11227-018-2397-3
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The objective of any anomaly detection system is to efficiently detect several types of malicious traffic patterns that cannot be detected by conventional firewall systems. Designing an efficient intrusion detection system has three primary challenges that include addressing high dimensionality problem, choice of learning algorithm, and distance or similarity measure used to find the similarity value between any two traffic patterns or input observations. Feature representation and dimensionality reduction have been studied and addressed widely in the literature and have also been applied for the design of intrusion detection systems (IDS). The choice of classifiers is also studied and applied widely in the design of IDS. However, at the heart of IDS lies the choice of distance measure that is required for an IDS to judge an incoming observation as normal or abnormal. This challenge has been understudied and relatively less addressed in the research literature both from academia and from industry. This research aims at introducing a novel distance measure that can be used to perform feature clustering and feature representation for efficient intrusion detection. Recent studies such as CANN proposed feature reduction techniques for improving detection and accuracy rates of IDS that used Euclidean distance. However, accuracies of attack classes such as U2R and R2L are not significantly promising. Our approach GARUDA is based on clustering feature patterns incrementally and then representing features in different transformation space through using a novel fuzzy Gaussian dissimilarity measure. Experiments are conducted on both KDD and NSL-KDD datasets. The accuracy and detection rates of proposed approach are compared for classifiers such as kNN, J48, naive Bayes, along with CANN and CLAPP approaches. Experiment results proved that proposed approach resulted in the improved accuracy and detection rates for U2R and R2L attack classes when compared to other approaches.
引用
收藏
页码:4376 / 4413
页数:38
相关论文
共 50 条
  • [41] Sensor anomaly detection in the industrial internet of things based on edge computing
    Kong, Dequan
    Liu, Desheng
    Zhang, Lei
    He, Lili
    Shi, Qingwu
    Ma, Xiaojun
    TURKISH JOURNAL OF ELECTRICAL ENGINEERING AND COMPUTER SCIENCES, 2020, 28 (01) : 331 - 346
  • [42] Improving Internet of Things Platform with Anomaly Detection for Environmental Sensor Data
    Prabowo, Okyza Maherdy
    Supangkat, Suhono Harso
    Mulyana, Eueung
    Nugraha, I. Gusti Bagus Baskara
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2022, 13 (08) : 208 - 214
  • [43] IMLADS: Intelligent Maintenance and Lightweight Anomaly Detection System for Internet of Things
    Qin, Tao
    Wang, Bo
    Chen, Ruoya
    Qin, Zunying
    Wang, Lei
    SENSORS, 2019, 19 (04)
  • [44] Explainable Anomaly Detection System for Categorical Sensor Data in Internet of Things
    Yuan, Peng
    Tang, Lu-An
    Chen, Haifeng
    Sato, Moto
    Woodward, Kevin
    MACHINE LEARNING AND KNOWLEDGE DISCOVERY IN DATABASES, ECML PKDD 2022, PT VI, 2023, 13718 : 594 - 598
  • [45] Multidimensional Trust-Based Anomaly Detection System in Internet of Things
    Gai, Fangyu
    Zhang, Jiexin
    Zhu, Peidong
    Jiang, Xinwen
    WIRELESS ALGORITHMS, SYSTEMS, AND APPLICATIONS, WASA 2017, 2017, 10251 : 302 - 313
  • [46] Recent advances in anomaly detection in Internet of Things: Status, challenges, and perspectives
    Adhikari, Deepak
    Jiang, Wei
    Zhan, Jinyu
    Rawat, Danda B.
    Bhattarai, Asmita
    COMPUTER SCIENCE REVIEW, 2024, 54
  • [47] Analysis of anomaly detection method for Internet of things based on deep learning
    Ma, Wei
    TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2020, 31 (12):
  • [48] Anomaly detection and privacy preservation in Cloud-Centric Internet of Things
    Butun, Ismail
    Kantarci, Burak
    Erol-Kantarci, Melike
    2015 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATION WORKSHOP (ICCW), 2015, : 2610 - 2615
  • [49] Anomaly detection in WSN IoT (Internet of Things) environment through a consensus-based anomaly detection approach
    Anitha, C. L.
    Sumathi, R.
    MULTIMEDIA TOOLS AND APPLICATIONS, 2023, 83 (20) : 58915 - 58934
  • [50] Network Traffic Anomaly Detection: A Revisiting to Gaussian Process and Sparse Representation∗
    Wang, Yitu
    Nakachi, Takayuki
    IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 2024, E107A (01) : 125 - 133