Network Intrusion Detection by Variational Component-Based Feature Saliency Gaussian Mixture Clustering

被引:0
|
作者
Hong, Xin [1 ]
Papazachos, Zafeirios [1 ]
del Rincon, Jesus Martinez [1 ]
Miller, Paul [1 ]
机构
[1] Queens Univ Belfast, Sch Elect Elect Engn & Comp Sci, Ctr Secure Informat Technol, Belfast, Antrim, North Ireland
来源
COMPUTER SECURITY. ESORICS 2023 INTERNATIONAL WORKSHOPS, CPS4CIP, PT II | 2024年 / 14399卷
关键词
Component-based Feature Saliency; Clustering; Anomaly Detection; Network Intrusion Detection; SELECTION;
D O I
10.1007/978-3-031-54129-2_45
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Anomaly detection is a core function of the network intrusion detection system, and due to the high volume and dimensionality of network data, clustering is an important technique for anomaly detection in unsupervised machine learning. In this paper, we propose a clustering approach for anomaly detection on network traffic flow data. For profiling normal traffic, we apply the component-based feature saliency Gaussian mixture model. We then present a variational learning algorithm which can simultaneously optimize over the number of components, the saliencies of the features for each component, and the parameters of the mixture model. The preliminary experiments on a network intrusion dataset demonstrate the satisfying performance achieved by both our method on its own and with a data preprocessing using the auto-encoder.
引用
收藏
页码:761 / 772
页数:12
相关论文
共 50 条
  • [31] A Network Traffic Anomaly Detection Method Based on Gaussian Mixture Model
    Yu, Bin
    Zhang, Yongzheng
    Xie, Wenshu
    Zuo, Wenjia
    Zhao, Yiming
    Wei, Yuliang
    ELECTRONICS, 2023, 12 (06)
  • [32] Go With the Flow: Clustering Dynamically-Defined NetFlow Features for Network Intrusion Detection with DYNIDS
    Dias, Luis
    Valente, Simao
    Correia, Miguel
    2020 IEEE 19TH INTERNATIONAL SYMPOSIUM ON NETWORK COMPUTING AND APPLICATIONS (NCA), 2020,
  • [33] Hybrid Intrusion Detection: Combining Decision Tree and Gaussian Mixture Model
    Bitaab, Marzieh
    Hashemi, Sattar
    2017 14TH INTERNATIONAL ISC (IRANIAN SOCIETY OF CRYPTOLOGY) CONFERENCE ON INFORMATION SECURITY AND CRYPTOLOGY (ISCISC), 2017, : 8 - 12
  • [34] Anomaly Intrusion Detection System Using Hierarchical Gaussian Mixture Model
    Bahrololum, M.
    Khaleghi, M.
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2008, 8 (08): : 264 - 271
  • [35] Supervised feature selection techniques in network intrusion detection: A critical review
    Di Mauro, M.
    Galatro, G.
    Fortino, G.
    Liotta, A.
    ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2021, 101
  • [36] ESVI-GaMM: A fast network intrusion detection approach based on the Bayesian gamma mixture model
    He, Wenda
    Cai, Xiangrui
    Lai, Yuping
    Yuan, Xiaojie
    INFORMATION SCIENCES, 2024, 678
  • [37] Hyper clustering model for dynamic network intrusion detection
    Alfoudi, Ali Saeed
    Aziz, Mohammad R.
    Alyasseri, Zaid Abdi Alkareem
    Alsaeedi, Ali Hakem
    Nuiaa, Riyadh Rahef
    Mohammed, Mazin Abed
    Abdulkareem, Karrar Hameed
    Jaber, Mustafa Musa
    IET COMMUNICATIONS, 2022,
  • [38] Network Intrusion Detection Model With Clustering Ensemble Method
    Chen, Liang-Wei
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2015, 9 (11): : 239 - 250
  • [39] Feature Engineering and Model Optimization Based Classification Method for Network Intrusion Detection
    Zhang, Yujie
    Wang, Zebin
    APPLIED SCIENCES-BASEL, 2023, 13 (16):
  • [40] Network Intrusion Detection Based on Feature Image and Deformable Vision Transformer Classification
    He, Kan
    Zhang, Wei
    Zong, Xuejun
    Lian, Lian
    IEEE ACCESS, 2024, 12 : 44335 - 44350