TY - GEN
T1 - A divergence-measure based classification method for detecting anomalies in network traffic
AU - Balagani, Kiran S.
AU - Phoha, Vir V.
AU - Kuchimanchi, Gopi K.
PY - 2007
Y1 - 2007
N2 - We present 'D-CAD,' a novel divergence-measure based classification method for anomaly detection in network traffic. The D-CAD method identifies anomalies by performing classification on features drawn from software sensors that monitor network traffic. We compare the performance of the D-CAD method with two classifier based anomaly detection methods implemented using supervised Bayesian estimation and supervised maximum-likelihood estimation. Results show that the area under receiver operating characteristic curve (AUC) of the D-CAD method is as high as 0.9524, compared to an AUC value of 0.9102 of the supervised maximum-likelihood estimation based anomaly detection method and to an AUC value of 0.8887 of the supervised Bayesian estimation based anomaly detection method.
AB - We present 'D-CAD,' a novel divergence-measure based classification method for anomaly detection in network traffic. The D-CAD method identifies anomalies by performing classification on features drawn from software sensors that monitor network traffic. We compare the performance of the D-CAD method with two classifier based anomaly detection methods implemented using supervised Bayesian estimation and supervised maximum-likelihood estimation. Results show that the area under receiver operating characteristic curve (AUC) of the D-CAD method is as high as 0.9524, compared to an AUC value of 0.9102 of the supervised maximum-likelihood estimation based anomaly detection method and to an AUC value of 0.8887 of the supervised Bayesian estimation based anomaly detection method.
UR - http://www.scopus.com/inward/record.url?scp=34748849988&partnerID=8YFLogxK
UR - http://www.scopus.com/inward/citedby.url?scp=34748849988&partnerID=8YFLogxK
U2 - 10.1109/ICNSC.2007.372808
DO - 10.1109/ICNSC.2007.372808
M3 - Conference contribution
AN - SCOPUS:34748849988
SN - 1424410762
SN - 9781424410767
T3 - 2007 IEEE International Conference on Networking, Sensing and Control, ICNSC'07
SP - 374
EP - 379
BT - 2007 IEEE International Conference on Networking, Sensing and Control, ICNSC'07
T2 - 2007 IEEE International Conference on Networking, Sensing and Control, ICNSC'07
Y2 - 15 April 2007 through 17 April 2007
ER -