Entropy-based Robust PCA for Communication Network Anomaly Detection

被引:0
|
作者
Liu, Duo [1 ]
Lung, Chung-Horng [1 ]
Seddigh, Nabil [2 ]
Nandy, Biswajit [2 ]
机构
[1] Carleton Univ, Dept Syst & Comp Engn, Ottawa, ON K1S 5B6, Canada
[2] Solana Networks, Ottawa, ON, Canada
来源
2014 IEEE/CIC INTERNATIONAL CONFERENCE ON COMMUNICATIONS IN CHINA (ICCC) | 2014年
基金
加拿大自然科学与工程研究理事会;
关键词
Anomaly detection; Principal Component Analysis; Mahalanobis distance; Temporal correlation; Singular value; decomposition (SVD); Squared prediction error (SPE);
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Principal component analysis (PCA) has received increasing attention as a method to distinguish network traffic anomalies from normal data instances based on its orthogonal linear transformation characteristics and dimensionality reduction technique. To address the issue of parameter sensitivity in the classical PCA, we propose modifications to the classical PCA, called robust PCA in this paper, which exhibits greater flexibility in detecting outliers for different traffic distributions. First, the robust PCA utilizes the Mahalanobis distance function which generates more flexible results than that of the Euclidean distance used in the classical PCA. The second modification to the classical PCA is to take into account the temporal effect of network traffic data by considering the neighbors' corresponding values. Temporal correlation is a practically important feature for network traffic, which the classical PCA does not consider. In addition, the proposed robust PCA also adopts entropy calculation to cope with both numerical and categorical data, as both data types exist in real traffic traces. Finally, using the robust PCA, our experimental results demonstrate the effectiveness in identifying network anomalies.
引用
收藏
页码:171 / 175
页数:5
相关论文
共 50 条
  • [21] PCA-Based Network Traffic Anomaly Detection
    Meimei Ding
    Hui Tian
    TsinghuaScienceandTechnology, 2016, 21 (05) : 500 - 509
  • [22] PCA-Based Network Traffic Anomaly Detection
    Ding, Meimei
    Tian, Hui
    TSINGHUA SCIENCE AND TECHNOLOGY, 2016, 21 (05) : 500 - 509
  • [23] A novel PCA-based Network Anomaly Detection
    Callegari, Christian
    Gazzarrini, Loris
    Giordano, Stefano
    Pagano, Michele
    Pepe, Teresa
    2011 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2011,
  • [24] Entropy-based electricity theft detection in AMI network
    Singh, Sandeep Kumar
    Bose, Ranjan
    Joshi, Anupam
    IET CYBER-PHYSICAL SYSTEMS: THEORY & APPLICATIONS, 2018, 3 (02) : 99 - 105
  • [25] Entropy Based Method for Network Anomaly Detection
    Quan, Qian
    Hong-Yi, Che
    Rui, Zhang
    IEEE 15TH PACIFIC RIM INTERNATIONAL SYMPOSIUM ON DEPENDABLE COMPUTING, PROCEEDINGS, 2009, : 189 - 191
  • [26] USER: Unsupervised Structural Entropy-Based Robust Graph Neural Network
    Wang, Yifei
    Wang, Yupan
    Zhang, Zeyu
    Yang, Song
    Zhao, Kaiqi
    Liu, Jiamou
    THIRTY-SEVENTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOL 37 NO 8, 2023, : 10235 - 10243
  • [27] Entropy-based analyzing anomaly WEB traffic
    Nasseralfoghara, Mehrdad
    Hamidi, HamidReza
    JOURNAL OF HIGH SPEED NETWORKS, 2020, 26 (04) : 255 - 266
  • [28] USER: Unsupervised Structural Entropy-based Robust Graph Neural Network
    Wang, Yifei
    Wang, Yupan
    Zhang, Zeyu
    Yang, Song
    Zhao, Kaiqi
    Liu, Jiamou
    arXiv, 2023,
  • [29] An Entropy-Based Approach for Anomaly Detection in Activities of Daily Living in the Presence of a Visitor
    Howedi, Aadel
    Lotfi, Ahmad
    Pourabdollah, Amir
    ENTROPY, 2020, 22 (08)
  • [30] An Entropy-based Method for Attack Detection in Large Scale Network
    Liu, T.
    Wang, Z.
    Wang, H.
    Lu, K.
    INTERNATIONAL JOURNAL OF COMPUTERS COMMUNICATIONS & CONTROL, 2012, 7 (03) : 509 - 517