English
Related papers

Related papers: Catching Unusual Traffic Behavior using TF-IDF-bas…

200 papers

Software defined network (SDN) provides technical support for network construction in smart cities, However, the openness of SDN is also prone to more network attacks. Traditional abnormal traffic detection methods have complex algorithms…

Networking and Internet Architecture · Computer Science 2023-11-21 Kun Wang , Yu Fua , Xueyuan Duan , Taotao Liu , Jianqiao Xu

The stability and persistence of web services are important to Internet companies to improve user experience and business performances. To keep eyes on numerous metrics and report abnormal situations, time series anomaly detection methods…

Applications · Statistics 2020-08-24 Tianwei Li , Yitong Geng , Huai Jiang

Understanding and representing traffic patterns are key to detecting anomalous trajectories in the transportation domain. However, some trajectories can exhibit heterogeneous maneuvering characteristics despite confining to normal patterns.…

Machine Learning · Computer Science 2022-03-15 Sandeep Kumar Singh , Jaya Shradha Fowdur , Jakob Gawlikowski , Daniel Medina

Often logs hosted in large data centers represent network traffic data over a long period of time. For instance, such network traffic data logged via a TCP dump packet sniffer (as considered in the 1998 DARPA intrusion attack) included…

Distributed, Parallel, and Cluster Computing · Computer Science 2022-01-07 Prateek Chanda , Malay Bhattacharya

Advanced Persistent Threat (APT) attack, also known as directed threat attack, refers to the continuous and effective attack activities carried out by an organization on a specific object. They are covert, persistent and targeted, which are…

Cryptography and Security · Computer Science 2020-10-28 Ru Zhang , Wenxin Sun , Jianyi Liu , Jingwen Li , Guan Lei , Han Guo

In general, anomaly detection is the problem of distinguishing between normal data samples with well defined patterns or signatures and those that do not conform to the expected profiles. Financial transactions, customer reviews, social…

Machine Learning · Computer Science 2022-06-10 Paul Irofti , Andrei Patrascu , Andra Baltoiu

An intrusion detection system framework using mobile agents is a layered framework mechanism designed to support heterogeneous network environments to identify intruders at its best. Traditional computer misuse detection techniques can…

Networking and Internet Architecture · Computer Science 2010-07-15 N. Jaisankar , R. Saravanan , K. Durai Swamy

An increasing amount of Internet traffic has its content encrypted. We address the question of whether it is possible to predict the activities taking place over an encrypted channel, in particular Microsoft's Remote Desktop Protocol. We…

Cryptography and Security · Computer Science 2020-08-07 L. Lapczyk , D. B. Skillicorn

In Industrial Control Systems (ICS/SCADA), machine to machine data traffic is highly periodic. Previous work showed that in many cases, it is possible to create an automata-based model of the traffic between each individual Programmable…

Cryptography and Security · Computer Science 2018-08-16 Chen Markman , Avishai Wool , Alvaro A. Cardenas

Many works have studied the efficacy of state machines for detecting anomalies within NetFlows. These works typically learn a model from unlabeled data and compute anomaly scores for arbitrary traces based on their likelihood of occurrence…

Machine Learning · Computer Science 2025-03-11 Clinton Cao , Agathe Blaise , Annibale Panichella , Sicco Verwer

In successful enterprise attacks, adversaries often need to gain access to additional machines beyond their initial point of compromise, a set of internal movements known as lateral movement. We present Hopper, a system for detecting…

Cryptography and Security · Computer Science 2021-05-31 Grant Ho , Mayank Dhiman , Devdatta Akhawe , Vern Paxson , Stefan Savage , Geoffrey M. Voelker , David Wagner

In contemporary society, surveillance anomaly detection, i.e., spotting anomalous events such as crimes or accidents in surveillance videos, is a critical task. As anomalies occur rarely, most training data consists of unlabeled videos…

Computer Vision and Pattern Recognition · Computer Science 2022-08-05 MyeongAh Cho , Taeoh Kim , Woo Jin Kim , Suhwan Cho , Sangyoun Lee

In this report, we experimented with several concepts regarding text streams analysis. We tested an implementation of Incremental Sparse TF-IDF (IS-TFIDF) and Incremental Cosine Similarity (ICS) with the use of bipartite graphs. We are…

Information Retrieval · Computer Science 2018-11-30 Rui Portocarrero Sarmento , Pavel Brazdil

It is important to be able to detect and classify malicious network traffic flows such as DDoS attacks from benign flows. Normally the task is performed by using supervised classification algorithms. In this paper we analyze the usage of…

Cryptography and Security · Computer Science 2018-08-08 Quang-Vinh Dang

We introduce a novel network-adaptive algorithm that is suitable for alleviating network packet losses for low-latency interactive communications between a source and a destination. Our network-adaptive algorithm estimates in real-time the…

Networking and Internet Architecture · Computer Science 2020-06-30 Salma Emara , Silas L. Fong , Baochun Li , Ashish Khisti , Wai-Tian Tan , Xiaoqing Zhu , John Apostolopoulos

Given a stream of graph edges from a dynamic graph, how can we assign anomaly scores to edges in an online manner, for the purpose of detecting unusual behavior, using constant time and memory? Existing approaches aim to detect individually…

Machine Learning · Computer Science 2022-04-26 Siddharth Bhatia , Rui Liu , Bryan Hooi , Minji Yoon , Kijung Shin , Christos Faloutsos

We introduce the task of human action anomaly detection (HAAD), which aims to identify anomalous motions in an unsupervised manner given only the pre-determined normal category of training action samples. Compared to prior human-related…

Computer Vision and Pattern Recognition · Computer Science 2024-04-29 Shun Maeda , Chunzhi Gu , Jun Yu , Shogo Tokai , Shangce Gao , Chao Zhang

This paper presents a simple yet efficient method for an anomaly-based Intrusion Detection System (IDS). In reality, IDSs can be defined as a one-class classification system, where the normal traffic is the target class. The high diversity…

Machine Learning · Computer Science 2019-04-29 Bahram Mohammadi , Mohammad Sabokrou

This research aims to know traffic anomalies as early as possible. A traffic anomaly refers to a generic incident on the road that influences traffic flow and calls for urgent traffic management measures. `Knowing'' the occurrence of a…

Machine Learning · Computer Science 2025-04-25 Haocheng Duan , Hao Wu , Sean Qian

Processing driving data and investigating driving behavior has been receiving an increasing interest in the last decades, with applications ranging from car insurance pricing to policy making. A common strategy to analyze driving behavior…

Artificial Intelligence · Computer Science 2021-07-06 Maria Inês Silva , Roberto Henriques