Skip to Main content Skip to Navigation
Conference papers

Anomaly Detection from Network Logs Using Diffusion Maps

Abstract : The goal of this study is to detect anomalous queries from network logs using a dimensionality reduction framework. The fequencies of 2-grams in queries are extracted to a feature matrix. Dimensionality reduction is done by applying diffusion maps. The method is adaptive and thus does not need training before analysis. We tested the method with data that includes normal and intrusive traffic to a web server. This approach finds all intrusions in the dataset.
Document type :
Conference papers
Complete list of metadata

Cited literature [24 references]  Display  Hide  Download

https://hal.inria.fr/hal-01571332
Contributor : Hal Ifip <>
Submitted on : Wednesday, August 2, 2017 - 11:41:24 AM
Last modification on : Monday, June 15, 2020 - 12:08:19 PM

File

978-3-642-23957-1_20_Chapter.p...
Files produced by the author(s)

Licence


Distributed under a Creative Commons Attribution 4.0 International License

Identifiers

Citation

Tuomo Sipola, Antti Juvonen, Joel Lehtonen. Anomaly Detection from Network Logs Using Diffusion Maps. 12th Engineering Applications of Neural Networks (EANN 2011) and 7th Artificial Intelligence Applications and Innovations (AIAI), Sep 2011, Corfu, Greece. pp.172-181, ⟨10.1007/978-3-642-23957-1_20⟩. ⟨hal-01571332⟩

Share

Metrics

Record views

137

Files downloads

271