An optimized feature extraction algorithm for abnormal network traffic detection

被引:16
作者
Chen, Jinfu [1 ,2 ]
Chen, Yuhao [1 ,2 ]
Cai, Saihua [1 ,2 ]
Yin, Shang [1 ,2 ]
Zhao, Lingling [1 ,2 ]
Zhang, Zikang [1 ]
机构
[1] Jiangsu Univ, Sch Comp Sci & Commun Engn, Zhenjiang 212013, Jiangsu, Peoples R China
[2] Jiangsu Univ, Jiangsu Key Lab Secur Technol Ind Cyberspace, Zhenjiang 212013, Jiangsu, Peoples R China
来源
FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE | 2023年 / 149卷
基金
中国博士后科学基金;
关键词
Abnormal network traffic detection; Feature extraction; Kernel principal component analysis; Linear discriminant analysis; PCA;
D O I
10.1016/j.future.2023.07.039
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Abnormal network traffic detection is an important technology to guarantee cyberspace security, it detects malicious attack through identifying the behavior of network traffic. In the process of abnormal network traffic detection, feature extraction plays a very important role, and the quality of extracted features directly determine the effect of detection results. However, the existing feature extraction methods only process the features for one time, which causes these methods cannot provide efficient features; In addition, the heterogeneity of network traffic makes traditional abnormal network traffic detection methods unsuitable for the diverse and complex network traffic. To solve this problem, this paper proposes an optimized feature extraction algorithm called LD-KPCA based on Linear Discriminant Analysis (LDA) and Kernel Principal Component Analysis (KPCA). In the LD-KPCA, the KPCA is used firstly to project the original linearly inseparable data into a high-dimensional linearly separable space, thereby deleting the redundant and irrelevant features; And then, the LDA is used in the new feature space to perform secondary feature extraction. Compared to simply using KPCA, the additional use of LDA can solve the problem that KPCA only focuses on the performance of variance in the features but ignores the performance of mean in the features. Finally, we conduct a large amount of experiments to test the performance of the proposed LD-KPCA algorithm, and the experimental results show that the LD-KPCA algorithm can obtain high precision, recall as well as F1-measure in abnormal network traffic detection.& COPY; 2023 Elsevier B.V. All rights reserved.
引用
收藏
页码:330 / 342
页数:13
相关论文
共 30 条
[1]   LDA-GA-SVM: improved hepatocellular carcinoma prediction through dimensionality reduction and genetically optimized support vector machine [J].
Ali, Liaqat ;
Wajahat, Iram ;
Golilarz, Noorbakhsh Amiri ;
Keshtkar, Fazel ;
Bukhari, Syed Ahmad Chan .
NEURAL COMPUTING & APPLICATIONS, 2021, 33 (07) :2783-2792
[2]   Conceptual and empirical comparison of dimensionality reduction algorithms (PCA, KPCA, LDA, MDS, SVD, LLE, ISOMAP, LE, ICA, t-SNE) [J].
Anowar, Farzana ;
Sadaoui, Samira ;
Selim, Bassant .
COMPUTER SCIENCE REVIEW, 2021, 40
[3]   A comparative study of landslide susceptibility maps produced using support vector machine with different kernel functions and entropy data mining models in China [J].
Chen, Wei ;
Pourghasemi, Hamid Reza ;
Naghibi, Seyed Amir .
BULLETIN OF ENGINEERING GEOLOGY AND THE ENVIRONMENT, 2018, 77 (02) :647-664
[4]   PCA filtering and probabilistic SOM for network intrusion detection [J].
De la Hoz, Eduardo ;
De La Hoz, Emiro ;
Ortiz, Andres ;
Ortega, Julio ;
Prieto, Beatriz .
NEUROCOMPUTING, 2015, 164 :71-81
[5]   Early Botnet Detection for the Internet and the Internet of Things by Autonomous Machine Learning [J].
de Neira, Anderson Bergamini ;
Araujo, Alex Medeiros ;
Nogueira, Michele .
2020 16TH INTERNATIONAL CONFERENCE ON MOBILITY, SENSING AND NETWORKING (MSN 2020), 2020, :516-523
[6]  
Ebied H. M., 2012, 2012 8th International Conference on Informatics and Systems, pMM:72
[7]   Real-time fault detection and diagnosis using sparse principal component analysis [J].
Gajjar, Shriram ;
Kulahci, Murat ;
Palazoglu, Ahmet .
JOURNAL OF PROCESS CONTROL, 2018, 67 :112-128
[8]   A novel two-dimensional ECG feature extraction and classification algorithm based on convolution neural network for human authentication [J].
Hammad, Mohamed ;
Zhang, Shanzhuo ;
Wang, Kuanquan .
FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2019, 101 :180-196
[9]   Semi-Supervised Encrypted Traffic Classification With Deep Convolutional Generative Adversarial Networks [J].
Iliyasu, Auwal Sani ;
Deng, Huifang .
IEEE ACCESS, 2020, 8 :118-126
[10]   A deep learning method with wrapper based feature extraction for wireless intrusion detection system [J].
Kasongo, Sydney Mambwe ;
Sun, Yanxia .
COMPUTERS & SECURITY, 2020, 92 (92)