Comparison of Supervised and Unsupervised Learning for Detecting Anomalies in Network Traffic

被引:0
|
作者
McAndrew, Robert [1 ]
Hayne, Stephen [1 ]
Wang, Haonan [1 ]
机构
[1] Colorado State Univ, Ft Collins, CO 80523 USA
关键词
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Adversaries are always probing for vulnerable spots on the Internet so they can attack their target. By examining traffic at the firewall, we can look for anomalies that may represent these probes. To help select the right techniques we conduct comparisons of supervised and unsupervised machine learning on network flows to find sets of outliers flagged as potential threats. We apply Functional PCA and K-Means together versus Multilayer Perceptron on a real-world dataset of traffic prior to an NTP DDoS attack in January 2014; scanning activity was heightened during this pre-attack period. We partition data to evaluate detection powers of each technique and show that FPCA+Kmeans outperforms MLP. We also present a new variation of the circle plot for visualization of resulting outliers which we suggest excels at displaying multidimensional attributes of an individual IP's behavior over time. In small multiples, circle plots show a gestalt overview of traffic.
引用
收藏
页码:7136 / 7145
页数:10
相关论文
共 50 条
  • [21] Network Traffic Classification Using Supervised Learning Algorithms
    Choudhury, Mira Rani
    Muraleedharan, N.
    Acharjee, Parimal
    George, Aleena Terese
    2023 INTERNATIONAL CONFERENCE ON COMPUTER, ELECTRICAL & COMMUNICATION ENGINEERING, ICCECE, 2023,
  • [22] Improvement the schemes and models of detecting network traffic anomalies on computer systems
    Yusupdjanovich, Yusupov Sabirjan
    Rajaboevich, Gulomov Sherzod
    2020 IEEE 14TH INTERNATIONAL CONFERENCE ON APPLICATION OF INFORMATION AND COMMUNICATION TECHNOLOGIES (AICT2020), 2020,
  • [23] Detecting Network-wide Traffic Anomalies based on Spatial HMM
    Li, Min
    Yu, Shunzheng
    He, Li
    2008 IFIP INTERNATIONAL CONFERENCE ON NETWORK AND PARALLEL COMPUTING, PROCEEDINGS, 2008, : 198 - 203
  • [24] Using Machine Learning to Analyze Network Traffic Anomalies
    Khudoyarova, Anastasia
    Burlakov, Mikhail
    Kupriyashin, Mikhail
    PROCEEDINGS OF THE 2021 IEEE CONFERENCE OF RUSSIAN YOUNG RESEARCHERS IN ELECTRICAL AND ELECTRONIC ENGINEERING (ELCONRUS), 2021, : 2344 - 2348
  • [25] Detecting Fall Actions of Videos by Using Weakly-Supervised Learning and Unsupervised Clustering Learning
    Zhou, Jiaxin
    Komuro, Takashi
    ADVANCES IN VISUAL COMPUTING, ISVC 2022, PT I, 2022, 13598 : 313 - 324
  • [26] Unsupervised and Supervised Learning with the Random Forest Algorithm for Traffic Scenario Clustering and Classification
    Kruber, Friedrich
    Wurst, Jonas
    Morales, Eduardo Sanchez
    Chakraborty, Samarjit
    Botsch, Michael
    2019 30TH IEEE INTELLIGENT VEHICLES SYMPOSIUM (IV19), 2019, : 2463 - 2470
  • [27] Study of Network Traffic Recognition Based on Unsupervised Learning Method
    Pang Bin
    Li Hua
    EBM 2010: INTERNATIONAL CONFERENCE ON ENGINEERING AND BUSINESS MANAGEMENT, VOLS 1-8, 2010, : 5105 - +
  • [28] ON THE COMBINATION OF SUPERVISED AND UNSUPERVISED LEARNING
    INTRATOR, N
    PHYSICA A, 1993, 200 (1-4): : 655 - 661
  • [29] Unsupervised Machine Learning for Anomaly Detection in Synchrophasor Network Traffic
    Donner, Phillip
    Leger, Aaron St.
    Blaine, Raymond
    2019 51ST NORTH AMERICAN POWER SYMPOSIUM (NAPS), 2019,
  • [30] Detecting Unbalanced Network Traffic Intrusions With Deep Learning
    Pavithra, S.
    Vikas, K. Venkata
    IEEE ACCESS, 2024, 12 : 74096 - 74107