CUSUM-based and Entropy-based Network Anomaly Detection: an Experimental Comparison

被引:0
|
作者
Callegari, Christian [1 ,2 ]
Pagano, Michele [1 ]
Giordano, Stefano [1 ]
Berizzi, Fabrizio [1 ,2 ]
机构
[1] Univ Pisa, Dept Informat Engn, Pisa, Italy
[2] RaSS Natl Lab CNIT, Pisa, Italy
关键词
Anomaly Detection; Entropy; CUSUM; Traffic Descriptors; MAWILab;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The impressive growth of the Internet and the ever increasing number of sensitive services together with the unawareness of the risks deriving from information sharing on the net by a significant amount of end-users pose serious security concerns. In such a scenario, Network Anomaly detection, due to its ability to face unknown attacks and new security threats, has attracted many research efforts in the last decade and, as such, a lot of different methods and approaches have been proposed. In this paper we present an extensive performance comparison between two of the most promising anomaly detection methods (namely CUSUM-based and Entropy-based), when applied to real backbone network traffic traces. The experimental results demonstrate that the effectiveness of the considered methods are strongly influenced by the considered traffic descriptors.
引用
收藏
页码:132 / 134
页数:3
相关论文
共 50 条
  • [1] Entropy-Based Anomaly Detection in a Network
    Ajay Shankar Shukla
    Rohit Maurya
    [J]. Wireless Personal Communications, 2018, 99 : 1487 - 1501
  • [2] Entropy-based Network Anomaly Detection
    Callegari, Christian
    Giordano, Stefano
    Pagano, Michele
    [J]. 2017 INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKING AND COMMUNICATIONS (ICNC), 2016, : 334 - 340
  • [3] Entropy-Based Anomaly Detection in a Network
    Shukla, Ajay Shankar
    Maurya, Rohit
    [J]. WIRELESS PERSONAL COMMUNICATIONS, 2018, 99 (04) : 1487 - 1501
  • [4] An Entropy-Based Network Anomaly Detection Method
    Berezinski, Przemyslaw
    Jasiul, Bartosz
    Szpyrka, Marcin
    [J]. ENTROPY, 2015, 17 (04) : 2367 - 2408
  • [5] Entropy-Based Feature Selection for Network Anomaly Detection
    Alabi, Ruth
    Yurtkan, Kamil
    [J]. 2018 2ND INTERNATIONAL SYMPOSIUM ON MULTIDISCIPLINARY STUDIES AND INNOVATIVE TECHNOLOGIES (ISMSIT), 2018, : 563 - 569
  • [6] Optimization-based attack against control systems with CUSUM-based anomaly detection
    Gualandi, Gabriele
    Maggio, Martina
    Papadopoulos, Alessandro Vittorio
    [J]. 2022 30TH MEDITERRANEAN CONFERENCE ON CONTROL AND AUTOMATION (MED), 2022, : 896 - 901
  • [7] Entropy-based Robust PCA for Communication Network Anomaly Detection
    Liu, Duo
    Lung, Chung-Horng
    Seddigh, Nabil
    Nandy, Biswajit
    [J]. 2014 IEEE/CIC INTERNATIONAL CONFERENCE ON COMMUNICATIONS IN CHINA (ICCC), 2014, : 171 - 175
  • [8] Machine Learning Enhanced Entropy-Based Network Anomaly Detection
    Timcenko, Valentina
    Gajin, Slavko
    [J]. ADVANCES IN ELECTRICAL AND COMPUTER ENGINEERING, 2021, 21 (04) : 51 - 60
  • [9] An Efficient Entropy-based Network Anomaly Detection Method Using MIB
    Zhao, Lei
    Wang, Fu
    [J]. PROCEEDINGS OF 2014 IEEE INTERNATIONAL CONFERENCE ON PROGRESS IN INFORMATICS AND COMPUTING (PIC), 2014, : 428 - 432
  • [10] CUSUM-based Joint Jammer Detection and Localization
    Choi, Jeongae
    Mughal, Muhammad Ozair
    Choi, Youngjune
    Kim, Donghyun
    Lopez-Salcedo, Jose A.
    Kim, Sunwoo
    [J]. 2018 IEEE INTERNATIONAL SYMPOSIUM ON DYNAMIC SPECTRUM ACCESS NETWORKS (DYSPAN), 2018,