Clustering and Neural Visualization for Flow-Based Intrusion Detection

被引:0
作者
Sanchez, Raul [1 ]
Herrero, Alvaro [1 ]
Corchado, Emilio [2 ]
机构
[1] Univ Burgos, Dept Civil Engn, Burgos 09006, Spain
[2] Univ Salamanca, Dept Informat & Automat, E-37008 Salamanca, Spain
来源
INTERNATIONAL JOINT CONFERENCE: CISIS'15 AND ICEUTE'15 | 2015年 / 369卷
关键词
Network intrusion detection; Network flow; Neural projection; Clustering; IDS; ALGORITHM;
D O I
10.1007/978-3-319-19713-5_29
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
To secure a system, potential threats must be identified and therefore, attack features are understood and predicted. Present work aims at being one step towards the proposal of an Intrusion Detection System (IDS) that faces zero-day attacks. To do that, MObile VIsualisation Connectionist Agent-Based IDS (MOVICAB-IDS), previously proposed as a hybrid-intelligent visualization-based IDS, is being upgraded by adding clustering methods. To check the validity of the proposed clustering extension, it faces a realistic flow-based dataset in present paper. The analyzed data come from a honeypot directly connected to the Internet (thus ensuring attack-exposure) and is analyzed by clustering and neural tools, individually and in conjunction. Through the experimental stage, it is shown that the combination of clustering and neural projection improves the detection capability on a continuous network flow.
引用
收藏
页码:333 / 345
页数:13
相关论文
共 50 条
[41]   Intrusion Detection System for Multiclass Detection based on a Convolutional Neural Network [J].
Milosevic, Marija ;
Ciric, Vladimir ;
Milentijevic, Ivan .
2024 IEEE 22ND MEDITERRANEAN ELECTROTECHNICAL CONFERENCE, MELECON 2024, 2024, :1275-1280
[42]   Flow-Based IDS for ICMPv6-Based DDoS Attacks Detection [J].
Elejla, Omar E. ;
Anbar, Mohammed ;
Belaton, Bahari ;
Alijla, Basem O. .
ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2018, 43 (12) :7757-7775
[43]   Network Intrusion Detection by Variational Component-Based Feature Saliency Gaussian Mixture Clustering [J].
Hong, Xin ;
Papazachos, Zafeirios ;
del Rincon, Jesus Martinez ;
Miller, Paul .
COMPUTER SECURITY. ESORICS 2023 INTERNATIONAL WORKSHOPS, CPS4CIP, PT II, 2024, 14399 :761-772
[44]   An Intrusion Detection System Based on Multi-Level Clustering for Hierarchical Wireless Sensor Networks [J].
Butun, Ismail ;
Ra, In-Ho ;
Sankar, Ravi .
SENSORS, 2015, 15 (11) :28960-28978
[45]   Flow-Based IDS for ICMPv6-Based DDoS Attacks Detection [J].
Omar E. Elejla ;
Mohammed Anbar ;
Bahari Belaton ;
Basem O. Alijla .
Arabian Journal for Science and Engineering, 2018, 43 :7757-7775
[46]   UTTAMA: An Intrusion Detection System Based on Feature Clustering and Feature Transformation [J].
Arun Nagaraja ;
B. Uma ;
Rajesh kumar Gunupudi .
Foundations of Science, 2020, 25 :1049-1075
[47]   A Genetic Clustering Technique for Anomaly-Based Intrusion Detection Systems [J].
Aissa, Naila Belhadj ;
Guerroumi, Mohamed .
2015 16TH IEEE/ACIS INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, ARTIFICIAL INTELLIGENCE, NETWORKING AND PARALLEL/DISTRIBUTED COMPUTING (SNPD), 2015, :87-92
[48]   Intrusion Detection Classifier Based on Dynamic SOM and Swarm Intelligence Clustering [J].
Feng, Yong ;
Zhong, Jiang ;
Xiong, Zhong-yang ;
Ye, Chun-xiao ;
Wu, Kai-gui .
ADVANCES IN COGNITIVE NEURODYNAMICS, PROCEEDINGS, 2008, :969-+
[49]   Enhancing Online Intrusion Detection Systems via Attack Clustering [J].
Yavari, Sara ;
Oteafy, Sharief .
IEEE CONFERENCE ON GLOBAL COMMUNICATIONS, GLOBECOM, 2023, :4650-4655
[50]   Neural Network Based Intrusion Detection System for Critical Infrastructures [J].
Linda, Ondrej ;
Vollmer, Todd ;
Manic, Milos .
IJCNN: 2009 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS, VOLS 1- 6, 2009, :102-109