Network Anomaly Detection Based on Wavelet Analysis

被引:125
|
作者
Lu, Wei [1 ]
Ghorbani, Ali A. [1 ]
机构
[1] Univ New Brunswick, Informat Secur Ctr Excellence, Fredericton, NB E3B 5A3, Canada
关键词
50;
D O I
10.1155/2009/837601
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Signal processing techniques have been applied recently for analyzing and detecting network anomalies due to their potential to find novel or unknown intrusions. In this paper, we propose a new network signal modelling technique for detecting network anomalies, combining the wavelet approximation and system identification theory. In order to characterize network traffic behaviors, we present fifteen features and use them as the input signals in our system. We then evaluate our approach with the 1999 DARPA intrusion detection dataset and conduct a comprehensive analysis of the intrusions in the dataset. Evaluation results show that the approach achieves high-detection rates in terms of both attack instances and attack types. Furthermore, we conduct a full day's evaluation in a real large-scale WiFi ISP network where five attack types are successfully detected from over 30 millions flows. Copyright (C) 2009 W. Lu and A. A. Ghorbani.
引用
收藏
页数:16
相关论文
共 50 条
  • [21] An Unsupervised Network Intrusion Detection Based on Anomaly Analysis
    Zhong, Jiang
    Deng, Xiongbing
    Wen, Luosheng
    Feng, Yong
    ICICTA: 2009 SECOND INTERNATIONAL CONFERENCE ON INTELLIGENT COMPUTATION TECHNOLOGY AND AUTOMATION, VOL II, PROCEEDINGS, 2009, : 367 - +
  • [22] Combining sketches and wavelet analysis for multi time-scale network anomaly detection
    Callegari, C.
    Giordano, S.
    Pagano, M.
    Pepe, T.
    COMPUTERS & SECURITY, 2011, 30 (08) : 692 - 704
  • [23] Study on wavelet neural network based anomaly detection in ocean observing data series
    Wang, Yi
    Han, Linsheng
    Liu, Wei
    Yang, Shujia
    Gao, Yanbo
    OCEAN ENGINEERING, 2019, 186
  • [24] Clustering in wavelet domain: A multiresolution ART network for anomaly detection
    Aradhye, HB
    Bakshi, BR
    Davis, JF
    Ahalt, SC
    AICHE JOURNAL, 2004, 50 (10) : 2455 - 2466
  • [25] Anomaly Detection and Localization by Diffusion Wavelet-based Analysis on Traffic Matrix
    Sun, Teng
    Tian, Hui
    Mei, Xuan
    COMPUTER SCIENCE AND INFORMATION SYSTEMS, 2015, 12 (04) : 1361 - 1374
  • [26] An Orthonormalized Basis Function Algorithm Based on Wavelet Analysis for Magnetic Anomaly Detection
    Zheng, Xin
    Xu, Qingfeng
    Zhou, Mei
    Liu, Hongying
    Qiu, Song
    Sun, Li
    Li, Qingli
    2017 10TH INTERNATIONAL CONGRESS ON IMAGE AND SIGNAL PROCESSING, BIOMEDICAL ENGINEERING AND INFORMATICS (CISP-BMEI), 2017,
  • [27] Anomaly Detection of Vibration Signals based on Wavelet Modulus Maximal Multifractal Analysis
    Zhang, Zhiguo
    Liu, Xue
    Wang, Hongping
    PROCEEDINGS OF 2019 IEEE 2ND INTERNATIONAL CONFERENCE ON ELECTRONIC INFORMATION AND COMMUNICATION TECHNOLOGY (ICEICT 2019), 2019, : 187 - 191
  • [28] Multiple Cycles of Time Series Anomaly Detection Algorithm Based on Wavelet Analysis
    Chen, Danbo
    Zhou, Xiaofeng
    2015 7TH INTERNATIONAL CONFERENCE ON INTELLIGENT HUMAN-MACHINE SYSTEMS AND CYBERNETICS IHMSC 2015, VOL II, 2015,
  • [29] Performance Analysis of Anomaly Based Network Intrusion Detection Systems
    Abedin, Md. Zainal
    Siddiquee, Kazy Noor-e-Alam
    Bhuyan, M. S.
    Karim, Razuan
    Hossain, Mohammad Shahadat
    Andersson, Karl
    PROCEEDINGS OF THE 2018 43RD ANNUAL IEEE CONFERENCE ON LOCAL COMPUTER NETWORKS WORKSHOPS (LCN WORKSHOPS), 2018, : 1 - 7
  • [30] Detection of network traffic anomaly based on instantaneous parameters analysis
    Yao, Xingmiao
    Zhang, Peng
    Gao, Jie
    Hu, Guangmin
    2006 10TH INTERNATIONAL CONFERENCE ON COMMUNICATION TECHNOLOGY, VOLS 1 AND 2, PROCEEDINGS, 2006, : 336 - +