DocumentCode :
838731
Title :
Network intrusion and fault detection: a statistical anomaly approach
Author :
Manikopoulos, Constantine ; Papavassiliou, Symeon
Author_Institution :
New Jersey Inst. of Technol., Newark, NJ, USA
Volume :
40
Issue :
10
fYear :
2002
fDate :
10/1/2002 12:00:00 AM
Firstpage :
76
Lastpage :
82
Abstract :
With the advent and explosive growth of the global Internet and electronic commerce environments, adaptive/automatic network/service intrusion and anomaly detection in wide area data networks and e-commerce infrastructures is fast gaining critical research and practical importance. We present and demonstrate the use of a general-purpose hierarchical multitier multiwindow statistical anomaly detection technology and system that operates automatically, adaptively, and proactively, and can be applied to various networking technologies, including both wired and wireless ad hoc networks. Our method uses statistical models and multivariate classifiers to detect anomalous network conditions. Some numerical results are also presented that demonstrate that our proposed methodology can reliably detect attacks with traffic anomaly intensity as low as 3-5 percent of the typical background traffic intensity, thus promising to generate an effective early warning.
Keywords :
backpropagation; data communication; electronic commerce; neural nets; security of data; signal classification; statistical analysis; telecommunication security; telecommunication traffic; wide area networks; Internet; ad hoc wireless experiments; adaptive/automatic network/service intrusion; background traffic intensity; backpropagation; computer network attacks; denial of service; e-commerce infrastructure; early warning systems; electronic commerce environment; fault detection; hierarchical multitier statistical anomaly detection; multivariate classifiers; multiwindow anomaly detection; network intrusion; neural network classification; perceptron-back propagation hybrid; statistical models; traffic anomaly intensity; wide area data networks; wired ad hoc networks; wireless ad hoc networks; Adaptive systems; Electronic commerce; Explosives; Fault detection; IP networks; Intrusion detection; Mobile ad hoc networks; Telecommunication traffic; Traffic control; Web and internet services;
fLanguage :
English
Journal_Title :
Communications Magazine, IEEE
Publisher :
ieee
ISSN :
0163-6804
Type :
jour
DOI :
10.1109/MCOM.2002.1039860
Filename :
1039860
Link To Document :
بازگشت