Anomaly Detection using Wavelet-Based Estimation of LRD in Packet and Byte Count of Control Traffic

被引:0
|
作者
Zeb, Khan [1 ,2 ]
AsSadhan, Basil [1 ,2 ]
Al-Muhtadi, Jalal [1 ,3 ]
Alshebeili, Saleh [2 ,4 ]
机构
[1] King Saud Univ, Ctr Excellence Informat Assurance CoEIA, Riyadh, Saudi Arabia
[2] King Saud Univ, Coll Engn, Dept Elect Engn, Riyadh, Saudi Arabia
[3] King Saud Univ, Coll Comp & Informat Sci, Dept Comp Sci, Riyadh, Saudi Arabia
[4] King Saud Univ, KACST TIC RF & Photon E Soc RFTONICS, Riyadh, Saudi Arabia
关键词
anomaly detection; LRD; control traffic; network traffic analysis; wavelet;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
The detection of anomalous behavior such as low volume attacks and abnormalities in today's large volume of Internet traffic has become a challenging problem in the network community. An efficient and real-time detection of anomaly traffic is crucial in order to rapidly diagnose and mitigate the anomaly, and to recover the resulting malfunction. In this paper, we present an efficient anomaly detection method based on the estimation of long-range dependence (LRD) behavior in packet and byte count of the aggregated control traffic. This method surrogates Internet aggregated whole traffic (i.e., control plus data) by the aggregated control traffic and detects anomaly traffic through the wavelet-based estimation of LRD behavior in the corresponding control traffic. Since Internet traffic exhibits LRD behavior during benign normal condition, deviation from this behavior can indicate an anomalous behavior. Experiments on the KSU dataset demonstrate that this method not only significantly improves the process of anomaly detection by considerably reducing the large-volume of traffic to be processed but also achieves a high detection effect. Because the control traffic constitute a small fraction of the whole traffic, and usually most of the attacks are manifested and carried out in the control traffic; therefore, surrogating the whole traffic by the control traffic increases the detection efficacy.
引用
收藏
页码:316 / 321
页数:6
相关论文
共 50 条
  • [31] WAVELET-BASED DETECTION AND ESTIMATION OF FRACTIONAL LEVY SIGNALS IN HIGH DIMENSIONS
    Boniece, B. Cooper
    Wendt, Herwig
    Didier, Gustavo
    Abry, Patrice
    2019 IEEE 8TH INTERNATIONAL WORKSHOP ON COMPUTATIONAL ADVANCES IN MULTI-SENSOR ADAPTIVE PROCESSING (CAMSAP 2019), 2019, : 574 - 578
  • [32] Voice activity detection based on using wavelet packet
    Eshaghi, Mohadese
    Mollaei, M. R. Karami
    DIGITAL SIGNAL PROCESSING, 2010, 20 (04) : 1102 - 1115
  • [33] Bayesian wavelet-based image estimation using noninformative priors
    Figueiredo, MAT
    Nowak, RD
    MATHEMATICAL MODELING, BAYESIAN ESTIMATION, AND INVERSE PROBLEMS, 1999, 3816 : 97 - 108
  • [34] SpotCaliper: fast wavelet-based spot detection with accurate size estimation
    Puespoeki, Zsuzsanna
    Sage, Daniel
    Ward, John Paul
    Unser, Michael
    BIOINFORMATICS, 2016, 32 (08) : 1278 - 1280
  • [35] Fetal QRS detection and heart rate estimation: a wavelet-based approach
    Almeida, Rute
    Goncalves, Hernani
    Bernardes, Joao
    Rocha, Ana Paula
    PHYSIOLOGICAL MEASUREMENT, 2014, 35 (08) : 1723 - 1735
  • [36] Wavelet-based modeling and smoothing for call admission control of VBR video traffic
    Jiang, J
    Xiong, ZX
    CONFERENCE RECORD OF THE THIRTY-SEVENTH ASILOMAR CONFERENCE ON SIGNALS, SYSTEMS & COMPUTERS, VOLS 1 AND 2, 2003, : 1510 - 1513
  • [37] MAGNETIC ANOMALY DETECTION BASED ON MAGNETIC GRADIENT ORTHONORMAL BASIS FUNCTION AND WAVELET PACKET
    Zhou Jiaqi
    Peng Genzhai
    Wang Chengdong
    Yan, Huan
    Zhang Zhihong
    Chen Yong
    2022 19TH INTERNATIONAL COMPUTER CONFERENCE ON WAVELET ACTIVE MEDIA TECHNOLOGY AND INFORMATION PROCESSING (ICCWAMTIP), 2022,
  • [38] Wavelet-based corner detection technique using optimal scale
    Quddus, A
    Gabbouj, M
    PATTERN RECOGNITION LETTERS, 2002, 23 (1-3) : 215 - 220
  • [39] Detection of microcalcifications using wavelet-based thresholding and filling dilation
    Xu, Weidong
    Zhang, Zanchao
    Xia, Shunren
    Duan, Huilong
    INTELLIGENT COMPUTING IN SIGNAL PROCESSING AND PATTERN RECOGNITION, 2006, 345 : 803 - 808
  • [40] Surge disturbance detection using wavelet-based neural network
    Wang, Jing
    Shu, Hongchun
    Chen, Xueyun
    Dianli Xitong Zidonghue/Automation of Electric Power Systems, 2002, 26 (06): : 50 - 54