• Home
  • Search
  • Anomaly detection in Network Traffic Using Unsupervised Machine learning Approach
  • Cite Icon71
  • https://doi.org/10.1109/icces48766.2020.9137987Copy DOI Icon

Anomaly detection in Network Traffic Using Unsupervised Machine learning Approach

  • Jun 1, 2020
  • Aditya Vikram +1 more
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

The advent of IoT technology and the increase in wireless networking devices has led to an enormous increase in network attacks from different sources. To maintain networks as safe and secure, the Intrusion Detection System (IDS) have become very critical. Intrusion Detection Systems (IDS) are designed to protect the network by identifying anomaly behaviors or improper uses. Intrusion Detection systems provide more meticulous security functionality than access control barriers by detecting attempted and successful attacks at the end-point or within the network. Intrusion prevention systems are the next logical step to this approach as they can take real-time action against breaches. To have an accurate IDS, detailed visibility is required into the network traffic. The intrusion detection system should be able to detect inside the network threats as well as access control breaches. IDS has been around for a very long time now. These traditional IDS were rules and signature-based. Though they were able to reduce false positives they were not able to detect new attacks. In today's world due to the growth of connectivity, attacks have increased at an exponential rate and it has become essential to use a data-driven approach to tackle these issues. In this paper, the KDD data set was used to train the unsupervised machine learning algorithm called Isolation Forest. The data set is highly imbalanced and contains various attacks such as DOS, Probe, U2R, R2L. Since this data set suffers from a redundancy of values and class imbalance, the data preprocessing will be performed first and also used unsupervised learning. For this network traffic based anomaly detection model isolation forest was used to detect outliers and probable attacks the results were evaluated using the anomaly score.

Similar Papers
  • Conference Article
  • Citations5

Automated Intrusion Detection and Prevention System over SPIT (AIDPoS)

  • Aug 01, 2015
  • Amna Saad +3
  • Book Chapter
  • Citations8

Chapter 5 - Intrusion Prevention and Detection Systems

  • Jan 01, 2013
  • Managing Information Security
  • Christopher Day
  • Book Chapter
  • Citations5

Developing an Intelligent Intrusion Detection and Prevention System against Web Application Malware

  • Jan 01, 2013
  • Ammar Alazab +3
  • Book Chapter
  • Citations2

Evaluating Snort Alerts as a Classification Features Set

  • Jan 01, 2021
  • Anas I Al Suwailem +2
  • PDF
  • Research Article
  • Citations122

An Analysis of the KDD99 and UNSW-NB15 Datasets for the Intrusion Detection System

  • Oct 13, 2020
  • Symmetry
  • Muataz Salam Al-Daweri +3
  • Book Chapter
  • Citations1

Research on Distributed High Speed Network Intrusion Prevention System

  • Apr 25, 2019
  • Lei Zheng +6
  • Research Article
  • Citations2

Leveraging productivity indicators for anomaly detection in swine breeding herds with unsupervised learning

  • Nov 17, 2025
  • Frontiers in Veterinary Science
  • Mafalda Pedro Mil-Homens +6
  • Research Article
  • Citations64

Extending Isolation Forest for Anomaly Detection in Big Data via K-Means

  • Sep 22, 2021
  • ACM Transactions on Cyber-Physical Systems
  • Md Tahmid Rahman Laskar +7
  • Research Article
  • Citations11

Configuration of intrusion prevention systems based on a legal user: the case for using intrusion prevention systems instead of intrusion detection systems

  • Sep 22, 2018
  • Information Technology and Management
  • Chuanxi Cai +2
  • PDF
  • Research Article
  • Citations16

Real-Time Intrusion Detection and Prevention System for 5G and beyond Software-Defined Networks

  • Dec 31, 2022
  • Symmetry
  • Razvan Bocu +1
  • Research Article

Attack-aware Security Function Management

  • May 03, 2021
  • Online Publication Service of Würzburg University (Würzburg University)
  • Lukas Iffländer
  • Conference Article
  • Citations1

Neural Networks for Intrusion Detection

  • Oct 01, 2019
  • Danielagotseva +2
  • Research Article
  • Citations48

A systematic review on the integration of explainable artificial intelligence in intrusion detection systems to enhancing transparency and interpretability in cybersecurity.

  • Jan 28, 2025
  • Frontiers in artificial intelligence
  • Vincent Zibi Mohale +1
  • Research Article
  • Citations1

A NOVEL APPROACH FOR ADDRESSING IOT NETWORKS VULNERABILITIES IN DETECTION AND CLASSIFICATION OF DOS/DDOS ATTACKS

  • Oct 02, 2024
  • International Journal of Software Engineering and Computer Systems
  • Aisha Ibrahim Gide +1
  • Conference Article
  • Citations4

Using Vulnerability Analysis to Model Attack Scenario for Collaborative Intrusion Detection

  • Feb 01, 2008
  • Xuejiao Liu +1
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.