Generalized Outlier Gaussian Mixture Technique Based on Automated Association Features for Simulating and Detecting Web Application Attacks

计算机科学 恒虚警率 异常检测 数据挖掘 方案(数学) 离群值 Web应用程序 混合模型 特征(语言学) 机器学习 人工智能 万维网 数学分析 语言学 哲学 数学
作者
Nour Moustafa,Gaurav Misra,Jill Slay
出处
期刊:IEEE transactions on sustainable computing [Institute of Electrical and Electronics Engineers]
卷期号:6 (2): 245-256 被引量:19
标识
DOI:10.1109/tsusc.2018.2808430
摘要

Web application attacks constitute considerable security threats to computer networks and end users. Existing threat detection methods are mostly designed on signature-based approaches which cannot recognize zero-day vulnerabilities. Moreover, with the minimal availability of real-world web attack data, the effectiveness of such approaches is limited further. In this paper, we propose an architectural scheme for designing a threat intelligence technique for web attacks to address these challenges through a four-step methodology: 1) collecting web attack data by crawling websites and accumulating network traffic for representing this data as feature vectors; 2) dynamically extracting important features using the Association Rule Mining (ARM) algorithm; 3 ) using these extracted features to simulate web attack data; and 4) proposing a new Outlier Gaussian Mixture (OGM) technique for detecting known as well as zero-day attacks based on the anomaly detection methodology. The performance of the scheme is appraised using two well-known datasets, namely, the Web Attack and UNSW-NB15 datasets. The empirical evaluations demonstrate that the proposed scheme outperforms four other competing machine learning mechanisms in terms of detection rate and false alarm rates on both the original as well as simulated web data.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
开朗阁完成签到,获得积分10
刚刚
青青应助真实的咖啡豆采纳,获得10
刚刚
啦啦啦完成签到 ,获得积分10
1秒前
1秒前
waddles完成签到,获得积分10
1秒前
leslie完成签到,获得积分10
1秒前
夏xx完成签到 ,获得积分10
1秒前
2秒前
隐形曼青应助ustinian采纳,获得10
2秒前
2秒前
2秒前
2秒前
FashionBoy应助春实秋华采纳,获得10
2秒前
Sun_Y完成签到,获得积分10
2秒前
吴珺慈发布了新的文献求助10
2秒前
研友_nqv5WZ完成签到 ,获得积分10
3秒前
情怀应助Lindia采纳,获得10
3秒前
3秒前
爱笑碧玉发布了新的文献求助10
3秒前
木子完成签到 ,获得积分10
4秒前
4秒前
4秒前
Klvercy发布了新的文献求助10
4秒前
5秒前
5秒前
别抢我辣条完成签到,获得积分20
6秒前
6秒前
6秒前
小二郎应助炙热的元正采纳,获得10
6秒前
6秒前
6秒前
科研通AI2S应助12345采纳,获得10
7秒前
7秒前
万能图书馆应助小困包采纳,获得10
7秒前
科研通AI6.4应助123采纳,获得10
8秒前
8秒前
隐形萃发布了新的文献求助10
8秒前
fox199753206发布了新的文献求助10
9秒前
9秒前
9秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
AnnualResearch andConsultation Report of Panorama survey and Investment strategy onChinaIndustry 1000
機能性マイクロ細孔・マイクロ流体デバイスを利用した放射性核種の 分離・溶解・凝集挙動に関する研究 1000
卤化钙钛矿人工突触的研究 1000
Engineering for calcareous sediments : proceedings of the International Conference on Calcareous Sediments, Perth 15-18 March 1988 / edited by R.J. Jewell, D.C. Andrews 1000
Wolffs Headache and Other Head Pain 9th Edition 1000
Continuing Syntax 1000
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 物理 内科学 复合材料 催化作用 物理化学 光电子学 电极 细胞生物学 基因 无机化学
热门帖子
关注 科研通微信公众号,转发送积分 6257939
求助须知:如何正确求助?哪些是违规求助? 8080130
关于积分的说明 16880457
捐赠科研通 5330129
什么是DOI,文献DOI怎么找? 2837547
邀请新用户注册赠送积分活动 1814870
关于科研通互助平台的介绍 1669011