返回
Network anomaly detection based on probabilistic analysis
DOI:10.1007/s00500-017-2679-3.png)
摘要
En 中文
In this paper, we propose a method to detect network intrusions using anomaly detection technique based on probabilistic analysis. Victim's computers under attack show various symptoms such as degradation of TCP throughput, increase in CPU usage, increased round trip time, frequent disconnection to the Web sites, etc. These symptoms can be used as components to construct the k-dimensional feature space of multivariate normal distribution, in which case an anomaly detection method can be applied for the detection of the attack on the distribution. These features are generally highly correlated. Thus we choose only a few of these features for the anomaly detection in multivariate normal distribution. We use Mahalanobis distance to detect the anomalies for each data, normal, and abnormal. Anomalies are identified when their square root of Mahalanobis distance exceeds certain threshold. A detailed description of the threshold setting and the various experiments are discussed in simulation results.
Keyword:
Anomaly detection
Network intrusion
Traffic flood
DDoS attacks
Mahalanobis distance
AI总结
对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。
期刊
IF:
2.5
论文数:
1.0W
被引数:
2.1W
机构
引用论文
Functional results after arthroscopic repair of massive rotator cuff tears; influence of the application platelet-rich plasma combined with fibrin巨大肩袖撕裂的关节镜下修复术后的功能结果;血小板富集血浆与纤维蛋白联合应用的影响

