학술논문

When randomness improves the anomaly detection performance
Document Type
Conference
Source
2010 3rd International Symposium on Applied Sciences in Biomedical and Communication Technologies (ISABEL 2010) Applied Sciences in Biomedical and Communication Technologies (ISABEL), 2010 3rd International Symposium on. :1-5 Nov, 2010
Subject
Bioengineering
Communication, Networking and Broadcast Technologies
Components, Circuits, Devices and Systems
Computing and Processing
General Topics for Engineers
Robotics and Control Systems
Signal Processing and Analysis
IP networks
Principal component analysis
Wavelet analysis
Aggregates
Internet
Wavelet transforms
Conferences
Language
ISSN
2325-5315
2325-5331
Abstract
The increasing number of network attacks causes growing problems for network operators and users. Thus, detecting anomalous traffic is of primary interest in IP networks management. The problem has been faced by many researchers, but still remains an open field, since a general solution has not been found yet. In this paper we want to demonstrate as the performance of well-known methods for network anomaly detection can be improved, by performing a random aggregation of the data, before looking for the anomalies. In more detail, we show that, in two distinct cases (chosen as representative of the state-of-the-art in the field) the use of the sketches strongly improves the achieved performance.