Network Anomaly Detection Based on Wavelet Analysis

被引:125
|
作者
Lu, Wei [1 ]
Ghorbani, Ali A. [1 ]
机构
[1] Univ New Brunswick, Informat Secur Ctr Excellence, Fredericton, NB E3B 5A3, Canada
关键词
50;
D O I
10.1155/2009/837601
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Signal processing techniques have been applied recently for analyzing and detecting network anomalies due to their potential to find novel or unknown intrusions. In this paper, we propose a new network signal modelling technique for detecting network anomalies, combining the wavelet approximation and system identification theory. In order to characterize network traffic behaviors, we present fifteen features and use them as the input signals in our system. We then evaluate our approach with the 1999 DARPA intrusion detection dataset and conduct a comprehensive analysis of the intrusions in the dataset. Evaluation results show that the approach achieves high-detection rates in terms of both attack instances and attack types. Furthermore, we conduct a full day's evaluation in a real large-scale WiFi ISP network where five attack types are successfully detected from over 30 millions flows. Copyright (C) 2009 W. Lu and A. A. Ghorbani.
引用
收藏
页数:16
相关论文
共 50 条
  • [41] Anomaly detection algorithm based on wavelet decomposition and vertex component analysis in hyperspectral images
    Meng, Qiang-Qiang
    Yang, Guang
    Sun, Jia-Cheng
    Lei, Zhong-Xiang
    Lu, Shan
    Guangdianzi Jiguang/Journal of Optoelectronics Laser, 2014, 25 (06): : 1152 - 1157
  • [42] A distributed approach to network anomaly detection based on independent component analysis
    Palmieri, Francesco
    Fiore, Ugo
    Castiglione, Aniello
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2014, 26 (05): : 1113 - 1129
  • [43] Anomaly detection of excessive network traffic based on ratio and volume analysis
    Kim, Hyun Joo
    Na, Jung C.
    Jang, Jong S.
    INTELLIGENCE AND SECURITY INFORMATICS, PROCEEDINGS, 2006, 3975 : 726 - 727
  • [44] Anomaly detection analysis based on correlation of features in graph neural network
    Ko, Hoon
    Praca, Isabel
    Choi, Seong Gon
    MULTIMEDIA TOOLS AND APPLICATIONS, 2024, 83 (09) : 25487 - 25501
  • [45] Anomaly detection analysis based on correlation of features in graph neural network
    Hoon Ko
    Isabel Praca
    Seong Gon Choi
    Multimedia Tools and Applications, 2024, 83 : 25487 - 25501
  • [46] Network Anomaly Detection Based on Statistical Approach and Time Series Analysis
    Huang Kai
    Qi Zhengwei
    Liu Bo
    2009 INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS WORKSHOPS: WAINA, VOLS 1 AND 2, 2009, : 205 - 211
  • [47] Network Anomaly Detection Method Based on Community Detection
    Qian, Ai-Juan
    Fan, Xin
    Dong, Xiao-Ju
    Chu, Yan-Jie
    Yuan, Xiao-Ru
    Jisuanji Xuebao/Chinese Journal of Computers, 2022, 45 (04): : 825 - 837
  • [48] An Anomaly Detection Method Based on Normalized Mutual Information Feature Selection and Quantum Wavelet Neural Network
    Wanwei Huang
    Jianwei Zhang
    Haiyan Sun
    Huan Ma
    Zengyu Cai
    Wireless Personal Communications, 2017, 96 : 2693 - 2713
  • [49] An Anomaly Detection Method Based on Normalized Mutual Information Feature Selection and Quantum Wavelet Neural Network
    Huang, Wanwei
    Zhang, Jianwei
    Sun, Haiyan
    Ma, Huan
    Cai, Zengyu
    WIRELESS PERSONAL COMMUNICATIONS, 2017, 96 (02) : 2693 - 2713
  • [50] Stock Fluctuations Anomaly Detection Based on Wavelet Modulus Maxima
    Fang, Zhijun
    Luo, Guihua
    Xu, Shenghua
    Fei, Fengchang
    2009 INTERNATIONAL CONFERENCE ON BUSINESS INTELLIGENCE AND FINANCIAL ENGINEERING, PROCEEDINGS, 2009, : 360 - 363