CAMLPAD: Cybersecurity Autonomous Machine Learning Platform for Anomaly Detection

被引:9
|
作者
Hariharan, Ayush [1 ]
Gupta, Ankit [1 ]
Pal, Trisha [1 ]
机构
[1] Blue Cloak LLC, Sterling, VA 20164 USA
来源
ADVANCES IN INFORMATION AND COMMUNICATION, VOL 2 | 2020年 / 1130卷
关键词
Machine learning; Cybersecurity; Anomaly detection; Clustering; Visualization; INTRUSION DETECTION; DETECTION FRAMEWORK; SYSTEM;
D O I
10.1007/978-3-030-39442-4_52
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
As machine learning and cybersecurity continue to explode in the context of the digital ecosystem, the complexity of cybersecurity data combined with complicated and evasive machine learning algorithms leads to vast difficulties in designing an end-to-end system for intelligent, automatic anomaly classification. On the other hand, traditional systems use elementary statistics techniques and are often inaccurate, leading to weak centralized data analysis platforms. In this paper, we propose a novel system that addresses these two problems, titled CAMLPAD, for Cybersecurity Autonomous Machine Learning Platform for Anomaly Detection. The CAMLPAD system's streamlined, holistic approach begins with retrieving a multitude of different species of cybersecurity data in real-time using elasticsearch, then running several machine learning algorithms, namely Isolation Forest, Histogram-Based Outlier Score (HBOS), Cluster-Based Local Outlier Factor (CBLOF), and K-Means Clustering, to process the data. Next, the calculated anomalies are visualized using Kibana and are assigned an outlier score, which serves as an indicator for whether an alert should be sent to the system administrator that there are potential anomalies in the network. After comprehensive testing of our platform in a simulated environment, the CAMLPAD system achieved an adjusted rand score of 95%, exhibiting the reliable accuracy and precision of the system. All in all, the CAMLPAD system provides an accurate, streamlined approach to real-time cybersecurity anomaly detection, delivering a novel solution that has the potential to revolutionize the cybersecurity sector.
引用
收藏
页码:705 / 720
页数:16
相关论文
共 50 条
  • [41] A hybrid machine learning approach to network anomaly detection
    Shon, Taeshik
    Moon, Jongsub
    INFORMATION SCIENCES, 2007, 177 (18) : 3799 - 3821
  • [42] Evaluating Machine Learning Algorithms for Anomaly Detection in Clouds
    Gulenko, Anton
    Wallschlaeger, Marcel
    Schmidt, Florian
    Kao, Odej
    Liu, Feng
    2016 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2016, : 2716 - 2721
  • [43] Machine Learning Approaches for Anomaly Detection in IoT Networks
    Kumar, Gotte Ranjith
    Kulkarni, Anagha Deepak
    Kumar, B. Santhosh
    Singh, Navdeep
    Revathi, V
    Kumar, T. Ch. Anil
    2024 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATION AND APPLIED INFORMATICS, ACCAI 2024, 2024,
  • [44] Anomaly Detection in ICS Datasets with Machine Learning Algorithms
    Mubarak, Sinil
    Habaebi, Mohamed Hadi
    Islam, Md Rafiqul
    Rahman, Farah Diyana Abdul
    Tahir, Mohammad
    COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 2021, 37 (01): : 33 - 46
  • [45] Intrusion detection by machine learning for multimedia platform
    Hsu, Chih-Yu
    Wang, Shuai
    Qiao, Yu
    MULTIMEDIA TOOLS AND APPLICATIONS, 2021, 80 (19) : 29643 - 29656
  • [46] Machine learning in cybersecurity: A review
    Handa, Anand
    Sharma, Ashu
    Shukla, Sandeep K.
    WILEY INTERDISCIPLINARY REVIEWS-DATA MINING AND KNOWLEDGE DISCOVERY, 2019, 9 (04)
  • [47] Impact of Virtual Networks on Anomaly Detection with Machine Learning
    Spiekermann, Daniel
    Keller, Joerg
    PROCEEDINGS OF THE 2020 6TH IEEE CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2020): BRIDGING THE GAP BETWEEN AI AND NETWORK SOFTWARIZATION, 2020, : 430 - 436
  • [48] Machine Learning for Text Anomaly Detection: A Systematic Review
    Boutalbi, Karima
    Loukil, Faiza
    Verjus, Herve
    Telisson, David
    Salamatian, Kave
    2023 IEEE 47TH ANNUAL COMPUTERS, SOFTWARE, AND APPLICATIONS CONFERENCE, COMPSAC, 2023, : 1319 - 1324
  • [49] Intrusion detection by machine learning for multimedia platform
    Chih-Yu Hsu
    Shuai Wang
    Yu Qiao
    Multimedia Tools and Applications, 2021, 80 : 29643 - 29656
  • [50] Network anomaly detection and security defense technology based on machine learning: A review
    Liu, Ruixiao
    Shi, Jing
    Chen, Xingyu
    Lu, Cuiying
    COMPUTERS & ELECTRICAL ENGINEERING, 2024, 119