CAMLPAD: Cybersecurity Autonomous Machine Learning Platform for Anomaly Detection

被引:9
|
作者
Hariharan, Ayush [1 ]
Gupta, Ankit [1 ]
Pal, Trisha [1 ]
机构
[1] Blue Cloak LLC, Sterling, VA 20164 USA
来源
ADVANCES IN INFORMATION AND COMMUNICATION, VOL 2 | 2020年 / 1130卷
关键词
Machine learning; Cybersecurity; Anomaly detection; Clustering; Visualization; INTRUSION DETECTION; DETECTION FRAMEWORK; SYSTEM;
D O I
10.1007/978-3-030-39442-4_52
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
As machine learning and cybersecurity continue to explode in the context of the digital ecosystem, the complexity of cybersecurity data combined with complicated and evasive machine learning algorithms leads to vast difficulties in designing an end-to-end system for intelligent, automatic anomaly classification. On the other hand, traditional systems use elementary statistics techniques and are often inaccurate, leading to weak centralized data analysis platforms. In this paper, we propose a novel system that addresses these two problems, titled CAMLPAD, for Cybersecurity Autonomous Machine Learning Platform for Anomaly Detection. The CAMLPAD system's streamlined, holistic approach begins with retrieving a multitude of different species of cybersecurity data in real-time using elasticsearch, then running several machine learning algorithms, namely Isolation Forest, Histogram-Based Outlier Score (HBOS), Cluster-Based Local Outlier Factor (CBLOF), and K-Means Clustering, to process the data. Next, the calculated anomalies are visualized using Kibana and are assigned an outlier score, which serves as an indicator for whether an alert should be sent to the system administrator that there are potential anomalies in the network. After comprehensive testing of our platform in a simulated environment, the CAMLPAD system achieved an adjusted rand score of 95%, exhibiting the reliable accuracy and precision of the system. All in all, the CAMLPAD system provides an accurate, streamlined approach to real-time cybersecurity anomaly detection, delivering a novel solution that has the potential to revolutionize the cybersecurity sector.
引用
收藏
页码:705 / 720
页数:16
相关论文
共 50 条
  • [21] Machine Learning Anomaly Detection in Large Systems
    Murphree, Jerry
    2016 IEEE AUTOTESTCON PROCEEDINGS, 2016,
  • [22] Machine Learning and Deep Learning Approaches for CyberSecurity: A Review
    Halbouni, Asmaa
    Gunawan, Teddy Surya
    Habaebi, Mohamed Hadi
    Halbouni, Murad
    Kartiwi, Mira
    Ahmad, Robiah
    IEEE ACCESS, 2022, 10 : 19572 - 19585
  • [23] SoK of Machine Learning and Deep Learning Based Anomaly Detection Methods for Automatic Dependent Surveillance- Broadcast
    Cevik, Nursah
    Akleylek, Sedat
    IEEE ACCESS, 2024, 12 : 35643 - 35662
  • [24] Using Imbalanced Triangle Synthetic Data for Machine Learning Anomaly Detection
    Luo, Menghua
    Wang, Ke
    Cai, Zhiping
    Liu, Anfeng
    Li, Yangyang
    Cheang, Chak Fong
    CMC-COMPUTERS MATERIALS & CONTINUA, 2019, 58 (01): : 15 - 26
  • [25] Service anomaly detection in dry bulk terminals: a machine learning approach
    Ansorena, Inigo L.
    INTERNATIONAL JOURNAL OF SHIPPING AND TRANSPORT LOGISTICS, 2023, 17 (03) : 281 - 302
  • [26] Anomaly Detection in Network Traffic Using Advanced Machine Learning Techniques
    Ness, Stephanie
    Eswarakrishnan, Vishwanath
    Sridharan, Harish
    Shinde, Varun
    Janapareddy, Naga Venkata Prasad
    Dhanawat, Vineet
    IEEE ACCESS, 2025, 13 : 16133 - 16149
  • [27] A machine learning framework for network anomaly detection using SVM and GA
    Shon, T
    Kim, Y
    Lee, C
    Moon, A
    PROCEEDINGS FROM THE SIXTH ANNUAL IEEE SYSTEMS, MAN AND CYBERNETICS INFORMATION ASSURANCE WORKSHOP, 2005, : 176 - 183
  • [28] Intrusion Detection in secure network for Cybersecurity systems using Machine Learning and Data Mining
    Azwar, Hassan
    Murtaz, Muhammad
    Siddique, Mehwish
    Rehman, Saad
    2018 5TH IEEE INTERNATIONAL CONFERENCE ON ENGINEERING TECHNOLOGIES AND APPLIED SCIENCES (IEEE ICETAS), 2018,
  • [29] A Comprehensive Machine Learning Framework for Anomaly Detection in Credit Card Transactions
    Jeribi, Fathe
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2024, 15 (06) : 871 - 880
  • [30] Detecting Cybersecurity Threats for Industrial Control Systems Using Machine Learning
    Choi, Woohyun
    Pandey, Suman
    Kim, Jongwon
    IEEE ACCESS, 2024, 12 : 153550 - 153563