Catalog Home Page

Detecting security anomalies from internet traffic using the MA-RMSE algorithms

Pinto, B., Khera, V. and Fung, C.C. (2009) Detecting security anomalies from internet traffic using the MA-RMSE algorithms. In: 7th IEEE International Conference on Industrial Informatics (INDIN 2009), 23-26 June 2009, Cardiff, Wales pp. 887-891.

[img]
Preview
PDF - Published Version
Download (298kB) | Preview
    Link to Published Version: http://dx.doi.org/10.1109/INDIN.2009.5195920
    *Subscription may be required

    Abstract

    Many detection techniques against worms, denial of service attacks and botnets on the Internet have been developed. It is difficult to detect these threats if the malicious traffic has insufficient intensity, which is usually the case. To make the problem worse, legitimate Internet services behaving like worm and complexity network environments undermines the efficiency of the detection techniques. This paper proposes an entropy-based Internet threats detection approach that determines and reports the traffic complexity parameters when changes in the traffic complexity content may indicate a malicious network event. Based on the experiment, the proposed method is efficient and produces less false positive and false negative alarms with a faster detection time.

    Publication Type: Conference Paper
    Murdoch Affiliation: School of Information Technology
    Publisher: IEEE
    Copyright: (c) 2009 IEEE.
    Notes: Personal use of this material is permitted. However, permission to reprint/republish this material for advertising or promotional purposes or for creating new collective works for resale or redistribution to servers or lists, or to reuse any copyrighted component of this work in other works must be obtained from the IEEE.
    URI: http://researchrepository.murdoch.edu.au/id/eprint/782
    Item Control Page

    Downloads

    Downloads per month over past year