Title
Combining sketches and wavelet analysis for multi time-scale network anomaly detection
Abstract
With the rapid development and the increasing complexity of computer and communication systems and networks, traditional security technologies and measures can not meet the demand for integrated and dynamic security solutions. In this scenario, the use of Intrusion Detection Systems has emerged as a key element in network security. In this paper we address the problem proposing a wavelet-based technique able to detect network anomalies almost in real-time. In more detail, our approach is based on the combined use of sketches and wavelet analysis to reveal the anomalies in data collected at the router level. Moreover, to improve the detection rate we propose a multi time-scale analysis. The performance analysis, presented in this paper, demonstrates the effectiveness of the proposed method.
Year
DOI
Venue
2011
10.1016/j.cose.2011.08.006
Computers & Security
Keywords
Field
DocType
anomaly detection,sketches,wavelet analysis,data collection,network security,communication system,real time,intrusion detection system
Data mining,Anomaly detection,Computer security,Computer science,Network security,Real-time computing,Anomaly-based intrusion detection system,Router,Intrusion detection system,Wavelet
Journal
Volume
Issue
ISSN
30
8
0167-4048
Citations 
PageRank 
References 
6
0.46
15
Authors
4
Name
Order
Citations
PageRank
C. Callegari19814.23
Stefano Giordano260986.56
Michele Pagano319831.51
Teresa Pepe412311.26