"MINOS: 无监督的大型网络攻击检测与时间分析"
需积分: 5 37 浏览量
更新于2024-03-12
收藏 1.33MB PDF 举报
The task of monitoring malicious activities in large-scale networks has become increasingly challenging. The sheer volume and heterogeneity of network traffic hinder the manual definition of IDS signatures and deep packet inspection. In this thesis, the author presents MINOS, a novel, completely unsupervised method for generating anomaly scores for each host, enabling high-precision classification of infected (host generating malicious activity), attacked (host under attack), or clean (no infection) hosts. The hourly scores generated can detect the time range of host being infected or attacked without any prior knowledge. MINOS automatically creates personalized traffic behavior models for each host, without the need for any prior knowledge of existing or unknown attacks.
Experimental evaluations on real large-scale academic networks data spanning over a year show that MINOS achieves very high accuracy even with just two weeks of data analysis. The author demonstrates that MINOS is also more effective and faster than state-of-the-art unsupervised anomaly detection methods for traffic data. The thesis "MINOS: Unsupervised Netflow-Based Detection of Infected and Attacked Hosts, and Attack Time in Large Networks" by Mousume Bhowmick, submitted for the degree of Master of Science in Computer Science at Boise State University in August 2019, presents a significant contribution to the field of network security, offering a promising approach to addressing the challenges of monitoring and detecting malicious activities in large-scale networks.
2019-07-22 上传
2019-09-06 上传
2021-02-04 上传
2021-02-04 上传
2021-03-08 上传
2021-04-30 上传
2021-05-01 上传
2020-04-17 上传
2020-03-21 上传
小兔子平安
- 粉丝: 253
- 资源: 1940
最新资源
- node-silverpop:轻松访问Silverpop Engage API的Node.js实现
- 最小宽度网格图绘制算法研究
- 多数据源事务解决方案:统一管理单应用中的多数据库
- 利用Next.js匿名浏览Reddit子板块图片
- SpringBoot+H5官网模板,覆盖多种网页资源播放
- Gitshots-server:简化开源贡献的提交记录服务
- Scrapy-Dash工具:轻松生成Scrapy文档集
- Node.js v18.12.0发布,优化Linux PPC64LE服务器性能
- 蚂蚁设计专业版快速使用指南与环境配置
- Vue.js 2.3.4源码解读及开发环境配置指南
- LDBase:Lazarus开发者的dbf数据库管理开源工具
- 高效部署WordPress的VENISON脚本教程
- Saffron Bahraman-crx插件:控制产品线的栽培与培养
- Gitpod中运行前后端应用程序的指南
- Node.js v20.3.0新版本发布 - 开源跨平台JavaScript环境
- 掌握非线性方程根的迭代求解-Matlab方法实现