English
Related papers

Related papers: GID: Graph-based Intrusion Detection on Massive Pr…

200 papers

Ubiquitous anomalies endanger the security of our system constantly. They may bring irreversible damages to the system and cause leakage of privacy. Thus, it is of vital importance to promptly detect these anomalies. Traditional supervised…

Machine Learning · Computer Science 2019-07-25 Hongyu Chen , Li Jiang

Cyber-physical system (CPS) security for the smart grid enables secure communication for the SCADA and wide-area measurement system data. Power utilities world-wide use various SCADA protocols, namely DNP3, Modbus, and IEC 61850, for the…

Systems and Control · Electrical Eng. & Systems 2024-12-12 Sathya Narayana Mohan , Gelli Ravikumar , Manimaran Govindarasu

The use of Machine Learning (ML) techniques in Intrusion Detection Systems (IDS) has taken a prominent role in the network security management field, due to the substantial number of sophisticated attacks that often pass undetected through…

Networking and Internet Architecture · Computer Science 2020-09-22 Mario Di Mauro , Giovanni Galatro , Antonio Liotta

This survey focuses on intrusion detection systems (IDS) that leverage host-based data sources for detecting attacks on enterprise network. The host-based IDS (HIDS) literature is organized by the input data source, presenting targeted…

Cryptography and Security · Computer Science 2018-05-18 Tarrah R. Glass-Vanderlan , Michael D. Iannacone , Maria S. Vincent , Qian , Chen , Robert A. Bridges

The objective of this is to develop a Fuzzy aided Application layer Semantic Intrusion Detection System (FASIDS) which works in the application layer of the network stack. FASIDS consist of semantic IDS and Fuzzy based IDS. Rule based IDS…

Cryptography and Security · Computer Science 2010-07-15 S. Sangeetha , V. Vaidehi

Over the past few decades, Industrial Control Systems (ICSs) have been targeted by cyberattacks and are becoming increasingly vulnerable as more ICSs are connected to the internet. Using Machine Learning (ML) for Intrusion Detection Systems…

Cryptography and Security · Computer Science 2023-05-18 Alireza Dehlaghi-Ghadim , Mahshid Helali Moghadam , Ali Balador , Hans Hansson

This work considers a practical semi-supervised graph anomaly detection (GAD) scenario, where part of the nodes in a graph are known to be normal, contrasting to the extensively explored unsupervised setting with a fully unlabeled graph. We…

Machine Learning · Computer Science 2024-12-20 Hezhe Qiao , Qingsong Wen , Xiaoli Li , Ee-Peng Lim , Guansong Pang

Network Intrusion Detection Systems (NIDS) are computer systems which monitor a network with the aim of discerning malicious from benign activity on that network. While a wide range of approaches have met varying levels of success, most…

Artificial Intelligence · Computer Science 2010-07-05 Gianni Tedesco , Uwe Aickelin

Microservice systems expose rich telemetry streams, including metrics, logs, and distributed traces. Existing performance anomaly detection methods increasingly model these systems as graphs, where nodes represent services and edges…

Software Engineering · Computer Science 2026-05-26 Yunjian Ma

Modern Intrusion Detection Systems (IDS) face severe challenges due to heterogeneous network traffic, evolving cyber threats, and pronounced data imbalance between benign and attack flows. While generative models have shown promise in data…

Machine Learning · Computer Science 2025-12-04 Mahdi Arab Loodaricheh , Mohammad Hossein Manshaei , Anita Raja

Modern software systems have become increasingly complex, which makes them difficult to test and validate. Detecting software partial anomalies in complex systems at runtime can assist with handling unintended software behaviors, avoiding…

Software Engineering · Computer Science 2022-04-27 Shiyi Kong , Jun Ai , Minyan Lu , Shuguang Wang , W. Eric Wong

The rapid expansion of Internet of Things (IoT) systems across various domains such as industry, smart cities, healthcare, manufacturing, and government services has led to a significant increase in security risks, threatening data…

Cryptography and Security · Computer Science 2025-09-09 Fatemeh Roshanzadeh , Hamid Barati , Ali Barati

Enterprises and organizations are faced with potential threats from insider employees that may lead to serious consequences. Previous studies on insider threat detection (ITD) mainly focus on detecting abnormal users or abnormal time…

Cryptography and Security · Computer Science 2024-03-19 Xiangrui Cai , Yang Wang , Sihan Xu , Hao Li , Ying Zhang , Zheli Liu , Xiaojie Yuan

While most security projects have focused on fending off attacks coming from outside the organizational boundaries, a real threat has arisen from the people who are inside those perimeter protections. Insider threats have shown their power…

Cryptography and Security · Computer Science 2018-09-05 Anagi Gamachchi , Li Sun , Serdar Boztas

Graph anomaly detection (GAD), which aims to identify abnormal nodes that differ from the majority within a graph, has garnered significant attention. However, current GAD methods necessitate training specific to each dataset, resulting in…

Machine Learning · Computer Science 2024-12-25 Yixin Liu , Shiyuan Li , Yu Zheng , Qingfeng Chen , Chengqi Zhang , Shirui Pan

As computer networks proliferate, the gravity of network intrusions has escalated, emphasizing the criticality of network intrusion detection systems for safeguarding security. While deep learning models have exhibited promising results in…

Cryptography and Security · Computer Science 2025-05-21 Yifan Zeng

Graph Neural Networks (GNNs) have garnered intensive attention for Network Intrusion Detection System (NIDS) due to their suitability for representing the network traffic flows. However, most present GNN-based methods for NIDS are…

Machine Learning · Computer Science 2024-03-05 Renjie Xu , Guangwei Wu , Weiping Wang , Xing Gao , An He , Zhengpeng Zhang

In recent years, computer networks have become more and more advanced in terms of size, applications, complexity and level of heterogeneity. Moreover, availability and performance are important issues for end users. New types of…

Networking and Internet Architecture · Computer Science 2018-01-17 Mouhammd Alkasassbeh

Identification of anomalous events within system logs constitutes a pivotal element within the frame- work of cybersecurity defense strategies. However, this process faces numerous challenges, including the management of substantial data…

Cryptography and Security · Computer Science 2025-10-21 Zeng Zhang , Wenjie Yin , Xiaoqi Li

This paper describes the architecture and the fundamental methodology of an anomaly detector, which by continuously monitoring Simple Network Management Protocol data and by processing it as complex-events, is able to timely recognize…

Cryptography and Security · Computer Science 2021-06-29 Massimiliano Leone Itria , Enrico Schiavone , Nicola Nostro