Anomaly Detection Framework Based on Matching Pursuit for Network Security Enhancement

Authors

  • Rafał Renk ITTI Ltd., Poznań, Poland , Adam Mickiewicz University in Poznań image/svg+xml
  • Witold Hołubowicz ITTI Ltd., Poznań, Poland , Adam Mickiewicz University in Poznań image/svg+xml

DOI:

https://doi.org/10.26636/jtit.2011.1.1131

Keywords:

anomaly detection, intrusion detection, matching pursuit, network security, signal processing

Abstract

In this paper, a framework for recognizing network traffic in order to detect anomalies is proposed. We propose to combine and correlate parameters from different layers in order to detect 0-day attacks and reduce false positives. Moreover, we propose to combine statistical and signal-based features. The major contribution of this paper are: novel framework for network security based on the correlation approach as well as new signal based algorithm for intrusion detection using matching pursuit.

Downloads

Download data is not yet available.

Downloads

Submitted

2023-06-27

Published

2011-03-30

Issue

Section

ARTICLES FROM THIS ISSUE

How to Cite

[1]
R. Renk and W. Hołubowicz, “Anomaly Detection Framework Based on Matching Pursuit for Network Security Enhancement”, JTIT, vol. 43, no. 1, pp. 32–36, Mar. 2011, doi: 10.26636/jtit.2011.1.1131.