计算机科学
异常检测
稳健性(进化)
利用
数据挖掘
网络安全
图形
入侵检测系统
方案(数学)
理论计算机科学
计算机安全
数学分析
生物化学
化学
数学
基因
作者
Qingfeng Ding,Jinguo Li
标识
DOI:10.1016/j.jisa.2022.103149
摘要
With increasingly cyber-attacks and intrusion techniques, the threat of network security has become more and more serious. However, existing solutions are no longer sufficient in terms of accuracy as attacks continue to grow in quantity and complexity. Prior methods mainly focused on the application of deep learning techniques to analyze data changes in traffic flow. The cunning Cyber-attacks cannot be detected because some advanced attack techniques can conceal attacks and make them might seem innocuous in statistics. At the same time, traditional models only concentrate on the statistics of traffic sent by individual hosts, so the potential relationships of communication patterns in network traffic might be ignored. It makes these solutions are not competent for dealing with the various uncertainty in network traffic. In this paper, we propose an efficient anomaly detection approach, called AnoGLA, which considering the complex communication patterns between network structure and node properties. To mine the hidden relationship between network traffic, we built graph structured data in network traffic and exploits graph convolution network (GCN) for modeling. And we also combine long short-term memory network (LSTM) with Attention mechanism to extract the change information of the graph at different times. The effectiveness and robustness of proposed method are evaluated on two real-world datasets. The experiment results indicate that our scheme can effectively detect anomaly flow and outperforms the previous ones in network anomaly detection tasks.
科研通智能强力驱动
Strongly Powered by AbleSci AI