CAMLPAD: Cybersecurity Autonomous Machine Learning Platform for Anomaly Detection

被引:7
|
作者
Hariharan, Ayush [1 ]
Gupta, Ankit [1 ]
Pal, Trisha [1 ]
机构
[1] Blue Cloak LLC, Sterling, VA 20164 USA
关键词
Machine learning; Cybersecurity; Anomaly detection; Clustering; Visualization; INTRUSION DETECTION; DETECTION FRAMEWORK; SYSTEM;
D O I
10.1007/978-3-030-39442-4_52
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
As machine learning and cybersecurity continue to explode in the context of the digital ecosystem, the complexity of cybersecurity data combined with complicated and evasive machine learning algorithms leads to vast difficulties in designing an end-to-end system for intelligent, automatic anomaly classification. On the other hand, traditional systems use elementary statistics techniques and are often inaccurate, leading to weak centralized data analysis platforms. In this paper, we propose a novel system that addresses these two problems, titled CAMLPAD, for Cybersecurity Autonomous Machine Learning Platform for Anomaly Detection. The CAMLPAD system's streamlined, holistic approach begins with retrieving a multitude of different species of cybersecurity data in real-time using elasticsearch, then running several machine learning algorithms, namely Isolation Forest, Histogram-Based Outlier Score (HBOS), Cluster-Based Local Outlier Factor (CBLOF), and K-Means Clustering, to process the data. Next, the calculated anomalies are visualized using Kibana and are assigned an outlier score, which serves as an indicator for whether an alert should be sent to the system administrator that there are potential anomalies in the network. After comprehensive testing of our platform in a simulated environment, the CAMLPAD system achieved an adjusted rand score of 95%, exhibiting the reliable accuracy and precision of the system. All in all, the CAMLPAD system provides an accurate, streamlined approach to real-time cybersecurity anomaly detection, delivering a novel solution that has the potential to revolutionize the cybersecurity sector.
引用
收藏
页码:705 / 720
页数:16
相关论文
共 50 条
  • [1] Design and Evaluation of Unsupervised Machine Learning Models for Anomaly Detection in Streaming Cybersecurity Logs
    Sanchez-Zas, Carmen
    Larriva-Novo, Xavier
    Villagra, Victor A.
    Rodrigo, Mario Sanz
    Moreno, Jose Ignacio
    MATHEMATICS, 2022, 10 (21)
  • [2] Internet of Things Cybersecurity Platform Benchmark: A Machine Learning Assessment
    Craciun, Robert-Alexandru
    Pietraru, Radu Nicolae
    Moisescu, Mihnea Alexandru
    CONTROL ENGINEERING AND APPLIED INFORMATICS, 2024, 26 (03): : 12 - 20
  • [3] Anomaly Detection for Cybersecurity of the Substations
    Ten, Chee-Wooi
    Hong, Junho
    Liu, Chen-Ching
    IEEE TRANSACTIONS ON SMART GRID, 2011, 2 (04) : 865 - 873
  • [4] Using Deep Learning for Anomaly Detection in Autonomous Systems
    Jha, Nikhil Kumar
    von Enzberg, Sebastian
    Hillebrand, Michael
    ERCIM NEWS, 2020, (122): : 47 - 48
  • [5] A Comparative Study and a New Industrial Platform for Decentralized Anomaly Detection Using Machine Learning Algorithms
    Gerz, Fabian
    Bastuerk, Tolga Renan
    Kirchhoff, Julian
    Denker, Joachim
    Al-Shrouf, Loui
    Jelali, Mohieddine
    2022 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2022,
  • [6] Machine Learning Approaches to Maritime Anomaly Detection
    Obradovic, Ines
    Milicevic, Mario
    Zubrinic, Krunoslav
    NASE MORE, 2014, 61 (5-6): : 96 - 101
  • [7] Machine learning for physics simulation anomaly detection
    Good, Adam
    Pritchard, Howard
    Moore, Lissa
    Kenyon, Garrett
    APPLICATIONS OF MACHINE LEARNING 2021, 2021, 11843
  • [8] Machine Learning in Network Anomaly Detection: A Survey
    Wang, Song
    Balarezo, Juan Fernando
    Kandeepan, Sithamparanathan
    Al-Hourani, Akram
    Chavez, Karina Gomez
    Rubinstein, Benjamin
    IEEE ACCESS, 2021, 9 : 152379 - 152396
  • [9] Machine learning for anomaly detection in particle physics
    Belis V.
    Odagiu P.
    Aarrestad T.K.
    Reviews in Physics, 2024, 12
  • [10] Machine Learning Anomaly Detection in Large Systems
    Murphree, Jerry
    2016 IEEE AUTOTESTCON PROCEEDINGS, 2016,