Publication | Closed Access
NSOM: A Real-Time Network-Based Intrusion Detection System Using Self-Organizing Maps
89
Citations
9
References
2002
Year
Unknown Venue
Ddos DetectionIntrusive Network TrafficEngineeringData ScienceData MiningIntrusion Detection SystemThreat DetectionIntrusion ToleranceIntrusion DetectionNetwork AnalysisNetworked Computer SystemsNetwork Traffic MeasurementComputer ScienceBotnet DetectionStructured SomReal-time Adaptive SecuritySelf-organizing Map
In this paper we describe an implementation of a network based Intrusion Detection System (IDS) using Self-Organizing Maps (SOM). The system uses a structured SOM to classify real-time Ethernet network data. A graphical tool continuously displays the clustered data to reflect network activities. Different system parameters such as data collection, data preprocessing and classifier structure are discussed. The systems shows promise in its ability to classify regular v.s. irregular and possibly intrusive network traffic for a given host.
| Year | Citations | |
|---|---|---|
Page 1
Page 1