Network anomaly detection with bayesian self-organizing maps

ADVANCES IN COMPUTATIONAL INTELLIGENCE, PT I(2013)

引用 3|浏览1
暂无评分
摘要
The growth of the Internet and consequently, the number of interconnected computers through a shared medium, has exposed a lot of relevant information to intruders and attackers. Firewalls aim to detect violations to a predefined rule set and usually block potentially dangerous incoming traffic. However, with the evolution of the attack techniques, it is more difficult to distinguish anomalies from the normal traffic. Different intrusion detection approaches have been proposed, including the use of artificial intelligence techniques such as neural networks. In this paper, we present a network anomaly detection technique based on Probabilistic Self-Organizing Maps (PSOM) to differentiate between normal and anomalous traffic. The detection capabilities of the proposed system can be modified without retraining the map, but only modifying the activation probabilities of the units. This deals with fast implementations of Intrusion Detection Systems (IDS) necessary to cope with current link bandwidths.
更多
查看译文
关键词
network anomaly detection technique,bayesian self-organizing map,anomalous traffic,detection capability,dangerous incoming traffic,different intrusion detection approach,normal traffic,activation probability,proposed system,intrusion detection systems,probabilistic self-organizing maps
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要