Entropy-based Network Anomaly Detection

被引:0
|
作者
Callegari, Christian [1 ,2 ]
Giordano, Stefano [2 ]
Pagano, Michele [2 ]
机构
[1] CNIT, RaSS Natl Lab, Pisa, Italy
[2] Univ Pisa, Dept Informat Engn, Pisa, Italy
来源
2017 INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKING AND COMMUNICATIONS (ICNC) | 2016年
关键词
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Anomaly-based Intrusion Detection is a key research topic in network security due to its ability to face unknown attacks and new security threats. In this paper we propose a novel intrusion detection system that performs anomaly detection by studying the variation in the entropy associated to the network traffic. To this aim, the traffic is first aggregated by means of random data structures (namely three-dimension reversible sketches) and then the entropy of different traffic descriptors is computed by using several definitions of entropy. The experimental results obtained over the MAWILab dataset validate the system and demonstrate the effectiveness of our proposal.
引用
收藏
页码:334 / 340
页数:7
相关论文
共 50 条
  • [31] Entropy-based fade modeling and detection
    San Pedro Wandelmer, Jose
    Dominguez Cabrerizo, Sergio
    Denis, Nicolas
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2007, 23 (04) : 1265 - 1280
  • [32] A Network Anomaly Detection Method Based on Relative Entropy Theory
    Zhang, Ya-ling
    Han, Zhao-guo
    Ren, Jiao-xia
    PROCEEDINGS OF THE SECOND INTERNATIONAL SYMPOSIUM ON ELECTRONIC COMMERCE AND SECURITY, VOL I, 2009, : 231 - 235
  • [33] Entropy-based concept shift detection
    Vorburger, Peter
    Bernstein, Abraham
    ICDM 2006: SIXTH INTERNATIONAL CONFERENCE ON DATA MINING, PROCEEDINGS, 2006, : 1113 - +
  • [34] The Inadequacy of Entropy-Based Ransomware Detection
    McIntosh, Timothy
    Jang-Jaccard, Julian
    Watters, Paul
    Susnjak, Teo
    NEURAL INFORMATION PROCESSING, ICONIP 2019, PT V, 2019, 1143 : 181 - 189
  • [35] ENTROPY-BASED RAIN DETECTION AND REMOVAL
    Jha, Rajib Kumar
    Mohanty, Sraban Kumar
    Maitrey, Anand
    2013 INTERNATIONAL CONFERENCE ON CONTROL, AUTOMATION, ROBOTICS AND EMBEDDED SYSTEMS (CARE-2013), 2013,
  • [36] An Entropy-based TextWatermarking Detection Method
    Lu, Yijian
    Liu, Aiwei
    Yu, Dianzhi
    Li, Jingjing
    King, Irwin
    PROCEEDINGS OF THE 62ND ANNUAL MEETING OF THE ASSOCIATION FOR COMPUTATIONAL LINGUISTICS, VOL 1: LONG PAPERS, 2024, : 11724 - 11735
  • [37] ADMIRE: Anomaly detection method using entropy-based PCA with three-step sketches
    Kanda, Yoshiki
    Fontugne, Romain
    Fukuda, Kensuke
    Sugawara, Toshiharu
    COMPUTER COMMUNICATIONS, 2013, 36 (05) : 575 - 588
  • [38] Effect of Nonstationarity of Network Traffic in Entropy-Based Intrusion Detection (Case Study)
    Basicevic, Ilija
    Kostovic, Zarko
    Popovic, Miroslav
    Ocovaj, Stanislav
    2013 21ST TELECOMMUNICATIONS FORUM (TELFOR), 2013, : 125 - +
  • [39] Entropy-based water distribution network rehabilitation
    Wu, YB
    Tian, H
    ADVANCES IN WATER SUPPLY MANAGEMENT, 2003, : 209 - 216
  • [40] Anomaly Detection for User Behavior in Wireless Network Based on Cross Entropy
    Zhang, Chunxiao
    Hu, Yihong
    Zhu, Xinning
    Guo, Zhigang
    Huang, Junfei
    IEEE 12TH INT CONF UBIQUITOUS INTELLIGENCE & COMP/IEEE 12TH INT CONF ADV & TRUSTED COMP/IEEE 15TH INT CONF SCALABLE COMP & COMMUN/IEEE INT CONF CLOUD & BIG DATA COMP/IEEE INT CONF INTERNET PEOPLE AND ASSOCIATED SYMPOSIA/WORKSHOPS, 2015, : 1258 - 1263