A design of a parallel network anomaly detection algorithm based on classification

被引:1
|
作者
Ashok Kumar D. [1 ]
Venugopalan S.R. [2 ]
机构
[1] Department of Computer Science and Applications, Government Arts College, Kulithalai
[2] Aeronautical Development Agency, Ministry of Defence, Government of India, P. B. No. 1718, Vimanpura Post, Bangalore
关键词
Anomaly; Classification; Feature selection/weighting; Norm; Normalization; Parallel algorithm;
D O I
10.1007/s41870-019-00356-0
中图分类号
学科分类号
摘要
In the present digital age and with the huge volume of data floating around, the information security has become utmost importance. Intrusion detection is the process of analysing various events in a system/network for possible presence of intrusion. The aim of an intrusion detection system is to protect the system from unauthorized access. Design of intrusion detection systems (IDS) has gained lots of importance in the recent years and has become the standard component of in network security. Intrusion detection systems operate either using anomaly based or signature based and in some cases IDS operate in a hybrid way. The data growth rate and the higher bandwidth and network speed makes it very difficult to process the data in real-time. Many researchers have focused in this area and have used data mining techniques for detecting the intrusions. Classification is a data mining technique used to predict group membership for each data instance. Classification is being used by various researchers for detection intrusions. Lot of classification algorithms have been developed for intrusion detection with respective strengths and weaknesses. This paper presents a novel classification algorithm based on distance measure and Relief-F feature weighting. The performance measures of intrusion detection are compared with the commonly used classification algorithms such as Naïve Bayes, Decision Tree and Support Vector Machine (SVM) and the proposed algorithm outperforms the above mentioned algorithms in terms of Detection Rate, Accuracy, False Alarm Rate, F-Score and Mathews Correlation Coefficient. The proposed algorithm is tested using a benchmark dataset (KDDcup99 dataset) and a real traces dataset (Kyoto 2006 + dataset). This study also intend to compare the execution time for various classifiers and the parallel performance of NADA since NADA outperforms all the other classifiers in terms of serial execution time. The algorithm is parallelized and the results are presented in terms of execution time with various data size, speed up and efficiency. © 2019, Bharati Vidyapeeth's Institute of Computer Applications and Management.
引用
收藏
页码:2079 / 2092
页数:13
相关论文
共 50 条
  • [1] A parallel algorithm for network traffic anomaly detection based on Isolation Forest
    Tao, Xiaoling
    Peng, Yang
    Zhao, Feng
    Zhao, Peichao
    Wang, Yong
    INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS, 2018, 14 (11)
  • [2] An efficient parallel anomaly detection algorithm based on hierarchical clustering
    Wei-Wu, Ren
    Liang, Hu
    Kuo, Zhao
    Jianfeng, Chu
    Journal of Networks, 2013, 8 (03) : 672 - 679
  • [3] Sparse and Low Rank Matrices based Algorithm for Anomaly Detection and Classification in Network Traffic Monitoring
    Nugraheni, Pravita Dwi
    Wahidah, Ida
    Suratman, Fiky Y.
    2019 IEEE INTERNATIONAL CONFERENCE ON SIGNALS AND SYSTEMS (ICSIGSYS), 2019, : 62 - 68
  • [4] Network anomaly traffic detection algorithm based on SVM
    Lei, Yang
    2017 INTERNATIONAL CONFERENCE ON ROBOTS & INTELLIGENT SYSTEM (ICRIS), 2017, : 217 - 220
  • [5] Network anomaly detection based on selective ensemble algorithm
    Hongle Du
    Yan Zhang
    The Journal of Supercomputing, 2021, 77 : 2875 - 2896
  • [6] Design of network intrusion detection system based on parallel DPC clustering algorithm
    Wang, Jing
    Han, Dezhi
    INTERNATIONAL JOURNAL OF EMBEDDED SYSTEMS, 2020, 13 (03) : 318 - 327
  • [7] Network anomaly detection based on selective ensemble algorithm
    Du, Hongle
    Zhang, Yan
    JOURNAL OF SUPERCOMPUTING, 2021, 77 (03): : 2875 - 2896
  • [8] A Network Anomaly Detection Method Based on Genetic Algorithm
    Su, Qinggang
    Liu, Jingao
    2017 4TH INTERNATIONAL CONFERENCE ON SYSTEMS AND INFORMATICS (ICSAI), 2017, : 1029 - 1033
  • [9] A network traffic classification and anomaly detection method based on parallel cross-convolutional neural networks
    Zou, Bailin
    Liu, Tianhang
    International Journal of Security and Networks, 2024, 19 (02) : 92 - 100
  • [10] Anomaly Classification Using Genetic Algorithm-Based Random Forest Model for Network Attack Detection
    Assiri, Adel
    CMC-COMPUTERS MATERIALS & CONTINUA, 2021, 66 (01): : 767 - 778