Network Intrusion Detection by Variational Component-Based Feature Saliency Gaussian Mixture Clustering

被引:0
|
作者
Hong, Xin [1 ]
Papazachos, Zafeirios [1 ]
del Rincon, Jesus Martinez [1 ]
Miller, Paul [1 ]
机构
[1] Queens Univ Belfast, Sch Elect Elect Engn & Comp Sci, Ctr Secure Informat Technol, Belfast, Antrim, North Ireland
来源
COMPUTER SECURITY. ESORICS 2023 INTERNATIONAL WORKSHOPS, CPS4CIP, PT II | 2024年 / 14399卷
关键词
Component-based Feature Saliency; Clustering; Anomaly Detection; Network Intrusion Detection; SELECTION;
D O I
10.1007/978-3-031-54129-2_45
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Anomaly detection is a core function of the network intrusion detection system, and due to the high volume and dimensionality of network data, clustering is an important technique for anomaly detection in unsupervised machine learning. In this paper, we propose a clustering approach for anomaly detection on network traffic flow data. For profiling normal traffic, we apply the component-based feature saliency Gaussian mixture model. We then present a variational learning algorithm which can simultaneously optimize over the number of components, the saliencies of the features for each component, and the parameters of the mixture model. The preliminary experiments on a network intrusion dataset demonstrate the satisfying performance achieved by both our method on its own and with a data preprocessing using the auto-encoder.
引用
收藏
页码:761 / 772
页数:12
相关论文
共 50 条
  • [1] CLUSTERING-BASED NETWORK INTRUSION DETECTION
    Zhong, Shi
    Khoshgoftaar, Taghi M.
    Seliya, Naeem
    INTERNATIONAL JOURNAL OF RELIABILITY QUALITY AND SAFETY ENGINEERING, 2007, 14 (02) : 169 - 187
  • [2] UTTAMA: An Intrusion Detection System Based on Feature Clustering and Feature Transformation
    Nagaraja, Arun
    Uma, B.
    Gunupudi, Rajesh kumar
    FOUNDATIONS OF SCIENCE, 2020, 25 (04) : 1049 - 1075
  • [3] UTTAMA: An Intrusion Detection System Based on Feature Clustering and Feature Transformation
    Arun Nagaraja
    B. Uma
    Rajesh kumar Gunupudi
    Foundations of Science, 2020, 25 : 1049 - 1075
  • [4] Effects-based feature identification for network intrusion detection
    Louvieris, Panos
    Clewley, Natalie
    Liu, Xiaohui
    NEUROCOMPUTING, 2013, 121 : 265 - 273
  • [5] Clustering-Based Network Intrusion Detection System
    Fan, Chun-I
    Lai, Yen-Lin
    Shie, Cheng-Han
    2022 5TH IEEE CONFERENCE ON DEPENDABLE AND SECURE COMPUTING (IEEE DSC 2022), 2022,
  • [6] An effective convolutional neural network based on SMOTE and Gaussian mixture model for intrusion detection in imbalanced dataset
    Zhang, Hongpo
    Huang, Lulu
    Wu, Chase Q.
    Li, Zhanbo
    COMPUTER NETWORKS, 2020, 177
  • [7] cFEM: a cluster based feature extraction method for network intrusion detection
    Mazumder, Md. Mumtahin Habib Ullah
    Kadir, Md. Eusha
    Sharmin, Sadia
    Islam, Md. Shariful
    Alam, Muhammad Mahbub
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2023, 22 (05) : 1355 - 1369
  • [8] cFEM: a cluster based feature extraction method for network intrusion detection
    Md. Mumtahin Habib Ullah Mazumder
    Md. Eusha Kadir
    Sadia Sharmin
    Md. Shariful Islam
    Muhammad Mahbub Alam
    International Journal of Information Security, 2023, 22 : 1355 - 1369
  • [9] A new feature selection method for Gaussian mixture clustering
    Zeng, Hong
    Cheung, Yiu-Ming
    PATTERN RECOGNITION, 2009, 42 (02) : 243 - 250
  • [10] Design of network intrusion detection system based on parallel DPC clustering algorithm
    Wang, Jing
    Han, Dezhi
    INTERNATIONAL JOURNAL OF EMBEDDED SYSTEMS, 2020, 13 (03) : 318 - 327