Javascript must be enabled to continue!
Renyi entropy-driven network traffic anomaly detection with dynamic threshold
View through CrossRef
AbstractNetwork traffic anomaly detection is a critical issue in network security. Existing Abnormal traffic detection methods rely on statistical-based or anomaly-based approaches, and these detection methods all require a full understanding of traffic characteristics and attack patterns. Information entropy has been widely studied in abnormal traffic detection because it can describe the distribution characteristics of network traffic. However, this method makes it difficult to cope with the timing and variability of network traffic. To address these challenges, this paper proposes a network traffic anomaly detection method based on Renyi entropy. Simultaneously, we introduce a fixed time window and utilize an improved EWMA model within this window to dynamically set thresholds for anomaly detection. Experimental results show that the method proposed in this paper is superior to popular abnormal traffic detection methods in terms of effectiveness and efficiency, it is better adapted to the dynamic changes of network traffic and provides a more reliable solution for anomaly detection.
Springer Science and Business Media LLC
Title: Renyi entropy-driven network traffic anomaly detection with dynamic threshold
Description:
AbstractNetwork traffic anomaly detection is a critical issue in network security.
Existing Abnormal traffic detection methods rely on statistical-based or anomaly-based approaches, and these detection methods all require a full understanding of traffic characteristics and attack patterns.
Information entropy has been widely studied in abnormal traffic detection because it can describe the distribution characteristics of network traffic.
However, this method makes it difficult to cope with the timing and variability of network traffic.
To address these challenges, this paper proposes a network traffic anomaly detection method based on Renyi entropy.
Simultaneously, we introduce a fixed time window and utilize an improved EWMA model within this window to dynamically set thresholds for anomaly detection.
Experimental results show that the method proposed in this paper is superior to popular abnormal traffic detection methods in terms of effectiveness and efficiency, it is better adapted to the dynamic changes of network traffic and provides a more reliable solution for anomaly detection.
Related Results
Traffic Prediction in 5G Networks Using Machine Learning
Traffic Prediction in 5G Networks Using Machine Learning
The advent of 5G technology promises a paradigm shift in the realm of
telecommunications, offering unprecedented speeds and connectivity. However, the
...
Smart Traffic Control Using Computer Vision
Smart Traffic Control Using Computer Vision
A Smart Traffic Control System using Computer Vision utilizes cameras, image processing techniques, and machine learning algorithms to monitor, analyze, and manage traffic flow aut...
TYPES OF AI ALGORİTHMS USED İN TRAFFİC FLOW PREDİCTİON
TYPES OF AI ALGORİTHMS USED İN TRAFFİC FLOW PREDİCTİON
The increasing complexity of urban transportation systems and the growing volume of vehicles have made traffic congestion a persistent challenge in modern cities. Efficient traffic...
Traffic safety outcomes of traffic law application and the adoption of new technology in traffic control
Traffic safety outcomes of traffic law application and the adoption of new technology in traffic control
Experience of the State of Qatar
Introduction:
Since the second half of the last decade of the twentieth century, Qatar has witnessed the
implementation of a comprehensive developm...
Network Traffic Prediction Based on Boosting Learning
Network Traffic Prediction Based on Boosting Learning
Classification of network traffic is an important topic for network management, traffic routing, safe traffic discrimination, and better service delivery. Traffic examination is th...
A Novel Method for PD Feature Extraction of Power Cable with Renyi Entropy
A Novel Method for PD Feature Extraction of Power Cable with Renyi Entropy
Partial discharge (PD) detection can effectively achieve the status maintenance of XLPE (Cross Linked Polyethylene) cable, so it is the direction of the development of equipment ma...
Renyi entropy and conditional Renyi entropy of partitions of algebraic structures
Renyi entropy and conditional Renyi entropy of partitions of algebraic structures
The present paper is devoted to the study of Renyi entropy in algebraic structures. We define Renyi entropy of order q and its conditional version for a partition of an algebraic ...
Multiscale multifractal multiproperty analysis of financial time series based on Rényi entropy
Multiscale multifractal multiproperty analysis of financial time series based on Rényi entropy
This paper introduces a multiscale multifractal multiproperty analysis based on Rényi entropy (3MPAR) method to analyze short-range and long-range characteristics of financial time...

