CAMLPAD: Cybersecurity Autonomous Machine Learning Platform for Anomaly Detection

被引:7
|
作者
Hariharan, Ayush [1 ]
Gupta, Ankit [1 ]
Pal, Trisha [1 ]
机构
[1] Blue Cloak LLC, Sterling, VA 20164 USA
关键词
Machine learning; Cybersecurity; Anomaly detection; Clustering; Visualization; INTRUSION DETECTION; DETECTION FRAMEWORK; SYSTEM;
D O I
10.1007/978-3-030-39442-4_52
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
As machine learning and cybersecurity continue to explode in the context of the digital ecosystem, the complexity of cybersecurity data combined with complicated and evasive machine learning algorithms leads to vast difficulties in designing an end-to-end system for intelligent, automatic anomaly classification. On the other hand, traditional systems use elementary statistics techniques and are often inaccurate, leading to weak centralized data analysis platforms. In this paper, we propose a novel system that addresses these two problems, titled CAMLPAD, for Cybersecurity Autonomous Machine Learning Platform for Anomaly Detection. The CAMLPAD system's streamlined, holistic approach begins with retrieving a multitude of different species of cybersecurity data in real-time using elasticsearch, then running several machine learning algorithms, namely Isolation Forest, Histogram-Based Outlier Score (HBOS), Cluster-Based Local Outlier Factor (CBLOF), and K-Means Clustering, to process the data. Next, the calculated anomalies are visualized using Kibana and are assigned an outlier score, which serves as an indicator for whether an alert should be sent to the system administrator that there are potential anomalies in the network. After comprehensive testing of our platform in a simulated environment, the CAMLPAD system achieved an adjusted rand score of 95%, exhibiting the reliable accuracy and precision of the system. All in all, the CAMLPAD system provides an accurate, streamlined approach to real-time cybersecurity anomaly detection, delivering a novel solution that has the potential to revolutionize the cybersecurity sector.
引用
收藏
页码:705 / 720
页数:16
相关论文
共 50 条
  • [41] Intrusion detection by machine learning for multimedia platform
    Chih-Yu Hsu
    Shuai Wang
    Yu Qiao
    Multimedia Tools and Applications, 2021, 80 : 29643 - 29656
  • [42] Anomaly Based Intrusion Detection for IoT with Machine Learning
    Shaver, Addison
    Liu, Zhipeng
    Thapa, Niraj
    Roy, Kaushik
    Gokaraju, Balakrishna
    Yuan, Xiaohon
    2020 IEEE APPLIED IMAGERY PATTERN RECOGNITION WORKSHOP (AIPR): TRUSTED COMPUTING, PRIVACY, AND SECURING MULTIMEDIA, 2020,
  • [43] Impact of Virtual Networks on Anomaly Detection with Machine Learning
    Spiekermann, Daniel
    Keller, Joerg
    PROCEEDINGS OF THE 2020 6TH IEEE CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2020): BRIDGING THE GAP BETWEEN AI AND NETWORK SOFTWARIZATION, 2020, : 430 - 436
  • [44] On the Usefulness of Machine Learning Techniques in Collaborative Anomaly Detection
    Senel-Kleine, Secil
    Bouche, Johannes
    Kappes, Martin
    2015 INTERNET TECHNOLOGIES AND APPLICATIONS (ITA) PROCEEDINGS OF THE SIXTH INTERNATIONAL CONFERENCE (ITA 15), 2015, : 213 - 218
  • [45] Machine learning for anomaly detection in cyanobacterial fluorescence signals
    Almuhtaram, Husein
    Zamyadi, Arash
    Hofmann, Ron
    WATER RESEARCH, 2021, 197
  • [46] Internet of Things Anomaly Detection using Machine Learning
    Njilla, Laruent
    Pearlstein, Larry
    Wu, Xin-Wen
    Lutz, Adam
    Ezekiel, Soundararajan
    2019 IEEE APPLIED IMAGERY PATTERN RECOGNITION WORKSHOP (AIPR), 2019,
  • [47] Evaluating Machine Learning Algorithms for Anomaly Detection in Clouds
    Gulenko, Anton
    Wallschlaeger, Marcel
    Schmidt, Florian
    Kao, Odej
    Liu, Feng
    2016 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2016, : 2716 - 2721
  • [48] A hybrid machine learning approach to network anomaly detection
    Shon, Taeshik
    Moon, Jongsub
    INFORMATION SCIENCES, 2007, 177 (18) : 3799 - 3821
  • [49] IP Network Anomaly Detection using Machine Learning
    Nair, Roshan
    Kasula, Chaithanya Pramodh
    Vankayala, Sravanthi
    Chakraborty, Niloy
    2019 IEEE 5TH INTERNATIONAL CONFERENCE FOR CONVERGENCE IN TECHNOLOGY (I2CT), 2019,
  • [50] Anomaly Detection in ICS Datasets with Machine Learning Algorithms
    Mubarak, Sinil
    Habaebi, Mohamed Hadi
    Islam, Md Rafiqul
    Rahman, Farah Diyana Abdul
    Tahir, Mohammad
    COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 2021, 37 (01): : 33 - 46