Distributed detection/localization of change-points in high-dimensional network traffic data
From MaRDI portal
(Redirected from Publication:746229)
Abstract: We propose a novel approach for distributed statistical detection of change-points in high-volume network traffic. We consider more specifically the task of detecting and identifying the targets of Distributed Denial of Service (DDoS) attacks. The proposed algorithm, called DTopRank, performs distributed network anomaly detection by aggregating the partial information gathered in a set of network monitors. In order to address massive data while limiting the communication overhead within the network, the approach combines record filtering at the monitor level and a nonparametric rank test for doubly censored time series at the central decision site. The performance of the DTopRank algorithm is illustrated both on synthetic data as well as from a traffic trace provided by a major Internet service provider.
Recommendations
- Detection and localization of change-points in high-dimensional network traffic data
- Change-point detection in multichannel and distributed systems
- Detection of intrusions in information systems by sequential change-point methods
- Distributed change detection via average consensus over networks
- Detecting distributed network traffic anomaly with network-wide correlation analysis
Cites work
- scientific article; zbMATH DE number 3150484 (Why is no real title available?)
- scientific article; zbMATH DE number 1048663 (Why is no real title available?)
- scientific article; zbMATH DE number 3274494 (Why is no real title available?)
- A Nonparametric Test for Change in Randomly Censored Data
- A note on two problems in connexion with graphs
- Asymptotic Statistics
- Detection and localization of change-points in high-dimensional network traffic data
- Detection of intrusions in information systems by sequential change-point methods
- Minimax Methods for Multihypothesis Sequential Testing and Change-Point Detection Problems
Cited in
(16)- Note on studying change point of LRD traffic based on Li's detection of DDoS flood attacking
- Principle components and importance ranking of distributed anomalies
- Change-point detection in multichannel and distributed systems
- A Total Variation Based Method for Multivariate Time Series Segmentation
- Consistency of a range of penalised cost approaches for detecting multiple changepoints
- Sequential hashing: a flexible approach for unveiling significant patterns in high speed networks
- On change-point estimation under Sobolev sparsity
- Distributed change detection via average consensus over networks
- An \(L_0\)-norm regularized method for multivariate time series segmentation
- Detection and localization of change-points in high-dimensional network traffic data
- Asymptotic properties of semiparametric \(M\)-estimators with multiple change points
- An inexact projected gradient method for sparsity-constrained quadratic measurements regression
- Empirical likelihood test for high-dimensional two-sample model
- BayesProject: fast computation of a projection direction for multivariate changepoint detection
- Computational Science – ICCS 2005
- Detecting distributed network traffic anomaly with network-wide correlation analysis
This page was built for publication: Distributed detection/localization of change-points in high-dimensional network traffic data
Report a bug (only for logged in users!)Click here to report a bug for this page (MaRDI item Q746229)