Feature Transfer Based Network Anomaly Detection

被引:0
|
作者
Chen, Tao [1 ]
Wen, Kun [1 ]
机构
[1] Zhongyuan Univ Technol, Zhengzhou 450000, Peoples R China
来源
SCIENCE OF CYBER SECURITY, SCISEC 2022 | 2022年 / 13580卷
关键词
Transformer; Anomaly detection; Feature transfer; KDD99; INTRUSION DETECTION;
D O I
10.1007/978-3-031-17551-0_10
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Network anomaly detection techniques can identify potential attacks from network traffic. However, they have been less than ideal in terms of detection accuracy. One important reason is that, for real network traffic data, different kinds of data have highly similar characteristics, thus leading to the situation that models misclassify the data with very similar characteristics. This situation accounts for the majority of misclassified samples. Accordingly, this paper proposes a feature transfer based neural network anomaly detection algorithm, which achieves complete detection of anomalous data, both known and unknown attacks (theoretically), by transferring the range of features common to highly similar normal and abnormal data to the range of anomalous data features. Since the algorithm's effectiveness depends on the feature variability of the normal data samples, and it isn't easy to obtain a pair of normal data samples with completely different features, this paper uses only one kind of normal data sample with good consistency. This paper uses the Transformer model to build the experimental framework and conduct 50 iterations of the experiment. The Corrected validation set from the KDD99 dataset is used to validate the model training effect. The experiments show that, relative to the original model, the error rate decreases by 1.38% on average after using this algorithm, the specificity of unknown attacks increases by 27.9% on average, and the number of attack categories with more than 90% specificity of unknown attacks increases from one to six.
引用
收藏
页码:155 / 169
页数:15
相关论文
共 50 条
  • [1] Similarity Based Feature Transformation for Network Anomaly Detection
    Nagaraja, Arun
    Boregowda, Uma
    Khatatneh, Khalaf
    Vangipuram, Radhakrishna
    Rajasekhar, Nuvvusetty
    Kiran, V. Sravan
    IEEE ACCESS, 2020, 8 (08): : 39184 - 39196
  • [2] Anomaly detection based on the dynamic feature of network traffic
    Zhang, Yaxing
    Jin, Shuyuan
    Wang, Yuanzhuo
    Wang, Yanxia
    ADVANCES IN ENERGY, ENVIRONMENT AND MATERIALS SCIENCE, 2016, : 781 - 789
  • [3] Anomaly Subgraph Detection with Feature Transfer
    Sun, Ying
    Wang, Wenjun
    Wu, Nannan
    Yu, Wei
    Chen, Xue
    CIKM '20: PROCEEDINGS OF THE 29TH ACM INTERNATIONAL CONFERENCE ON INFORMATION & KNOWLEDGE MANAGEMENT, 2020, : 1415 - 1424
  • [4] Entropy-Based Feature Selection for Network Anomaly Detection
    Alabi, Ruth
    Yurtkan, Kamil
    2018 2ND INTERNATIONAL SYMPOSIUM ON MULTIDISCIPLINARY STUDIES AND INNOVATIVE TECHNOLOGIES (ISMSIT), 2018, : 563 - 569
  • [5] Human readable network troubleshooting based on anomaly detection and feature
    Navarro, Jose M.
    Huet, Alexis
    Rossi, Dario
    COMPUTER NETWORKS, 2022, 219
  • [6] Automated network feature weighting-based anomaly detection
    Tran, Dat
    Ma, Wanli
    Sharma, Dharmendra
    ISI 2008: 2008 IEEE INTERNATIONAL CONFERENCE ON INTELLIGENCE AND SECURITY INFORMATICS, 2008, : 162 - +
  • [7] Network traffic anomaly detection based on feature-based symbolic representation
    Zhan P.
    Chen L.
    Cao L.-H.
    Li X.-Q.
    Chen, Lin (chenlin@sdu.edu.cn), 1600, Zhejiang University (54): : 1281 - 1288
  • [8] A Membership Function for Feature Clustering Based Network Intrusion and Anomaly Detection
    Nagaraja, Arun
    Kumar, T. Satish
    ICEMIS'18: PROCEEDINGS OF THE FOURTH INTERNATIONAL CONFERENCE ON ENGINEERING AND MIS, 2018,
  • [9] Template-based Feature Aggregation Network for industrial anomaly detection
    Luo, Wei
    Yao, Haiming
    Yu, Wenyong
    ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2024, 131
  • [10] Human readable network troubleshooting based on anomaly detection and feature scoring
    Navarro, Jose M.
    Huet, Alexis
    Rossi, Dario
    Computer Networks, 2022, 219