Authors
Tarem Ahmed, Boris Oreshkin, Mark Coates
Publication date
2007/4/10
Journal
Proceedings of the 2nd USENIX workshop on Tackling computer systems problems with machine learning techniques
Pages
1-6
Publisher
USENIX Association
Description
Networks of various kinds often experience anoma-lous behaviour. Examples include attacks or large data transfers in IP networks, presence of intruders in distributed video surveillance systems, and an automobile accident or an untimely congestion in a road network. Machine learning techniques enable the development of anomaly detection algorithms that are non-parametric, adaptive to changes in the characteristics of normal behaviour in the relevant network, and portable across applications. In this paper we use two different datasets, pictures of a highway in Quebec taken by a network of webcams and IP traffic statistics from the Abilene network, as examples in demonstrating the applicability of two machine learning algorithms to network anomaly detection. We investigate the use of the block-based One-Class Neighbour Machine and the recursive Kernel-based Online Anomaly Detection algorithms.
Total citations
2008200920102011201220132014201520162017201820192020202120222023202441182814181212141817141510114
Scholar articles
T Ahmed, B Oreshkin, M Coates - Proceedings of the 2nd USENIX workshop on Tackling …, 2007