期刊文献+

一种基于Hurst指数的异常检测软件

Software for Anomaly Detection Based on Hurst
在线阅读 下载PDF
导出
摘要 根据Hurst指数变化发现异常是进行入侵检测的一种新思路。基于这样的思路,实现了一个异常检测软件。该软件通过数据包捕获,对数据进行特征提取,对特征进行时间序列划分,采用R/S和小波分析两种方法进行Hurst求解,最后根据求解的Hurst值判断异常。实际使用表明,基于Hurst指数的异常检测软件具有无需学习,检测快速的优点。 Anomaly detection based on Hurst provids one new idea, based on which, this paper implemented one software for anomaly. The software captures data packets, extracts features, and implements time series division, adopts two methods--R/S and wavelet analysis for computing Hurst value, lastly,judgs whether anomaly happens based on the valve. The actual use of software proves that the anomaly detection based on Hurst does not need to learn and has advantage of efficient detection.
出处 《计算机科学》 CSCD 北大核心 2008年第11期267-269,共3页 Computer Science
基金 国家自然科学基金(60573141和60773041) 江苏省高技术研究计划(BG2006001) 国家高科技863项目(2006AA01Z201、2006AA01Z219、2006AA01Z439、2007AA01Z404、2007AA01Z478) 2006江苏省软件专项 现代通信国家重点实验室基金(9140C1105040805) 江苏省高校自然科学研究计划(07KJB520083)资助
关键词 HURST指数 异常检测 软件 Hurst, Anomaly detection, Software
  • 相关文献

参考文献10

二级参考文献44

  • 1孙钦东,张德运,高鹏.基于时间序列分析的分布式拒绝服务攻击检测[J].计算机学报,2005,28(5):767-773. 被引量:55
  • 2任勋益,王汝传,王海艳.基于自相似检测DDoS攻击的小波分析方法[J].通信学报,2006,27(5):6-11. 被引量:56
  • 3[1]W.E. Leland, M. S. Taqqu, W. Willinger, D. V. Wilson, On the self-similar nature of Ethernet traffic (extended version), IEEE/ACM Trans. on Networking, 1994, 2(1), 1-15.
  • 4[2]J. Beran, R. Sherman, M. S.Taqqu, W. Willinger, Long range dependence in variable bit rate video traffic, IEEE Trans. on Communication, 1995, 43(2/3/4), 1566-1579.
  • 5[3]P. Abry, D. Veitch, Wavelet analysis of long-range dependent traffic, IEEE Trans. on Information Theory, 1998, 44(1), 2-15.
  • 6[4]Z. Sahinoglu, S. Tekinay, Multiresolution decomposition and burstiness analysis of traffic traces,Wireless Communications and Networking Conference, WCNC. New Orleans, LA, USA, IEEE,Vol.2, 1999, 560-563.
  • 7[5]P. Abry, P. Goncalves, P. Flandrin, Wavelet-based spectral analysis of 1/f process, IEEE International Conference on Acoustics, Speech, and Signal Processing, Minneapolis, MN, USA, Vol.3,1993, 237-240.
  • 8[6]G. Wornell, Signal Processing with Fractal: A Wavelet Based Approach, Prentice Hall, Znc. NJ,1995, 30-57.
  • 9[7]B. Tsybakov, N. D. Georganas, On self-similar traffic in ATM queues: Definitions, overflow probability bound, and cell delay distribution, IEEE/ACM Trans. on Networking, 1997, 5(3),397-409.
  • 10[8]S. Giordano, S. Miduri, M. Pagano, F. Russo, S. Tartarelli, A wavelet-based approach to the estimation of the Hurst parameter for self-similar data, International Conference on Digital Signal Processing, DSP 97, Santorini, Greece, Vol.2, 1997, 479-482.

共引文献94

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部