4.4 Article

A Survey of Outlier Detection Methods in Network Anomaly Identification

Journal

COMPUTER JOURNAL
Volume 54, Issue 4, Pages 570-588

Publisher

OXFORD UNIV PRESS
DOI: 10.1093/comjnl/bxr026

Keywords

anomaly; outlier; NIDS; density-based; distance-based; unsupervised

Funding

  1. Department of Information Technology, Ministry of Information Technology, Government of India

Ask authors/readers for more resources

The detection of outliers has gained considerable interest in data mining with the realization that outliers can be the key discovery to be made from very large databases. Outliers arise due to various reasons such as mechanical faults, changes in system behavior, fraudulent behavior, human error and instrument error. Indeed, for many applications the discovery of outliers leads to more interesting and useful results than the discovery of inliers. Detection of outliers can lead to identification of system faults so that administrators can take preventive measures before they escalate. It is possible that anomaly detection may enable detection of new attacks. Outlier detection is an important anomaly detection approach. In this paper, we present a comprehensive survey of well-known distance-based, density-based and other techniques for outlier detection and compare them. We provide definitions of outliers and discuss their detection based on supervised and unsupervised learning in the context of network anomaly detection.

Authors

I am an author on this paper
Click your name to claim this paper and add it to your profile.

Reviews

Primary Rating

4.4
Not enough ratings

Secondary Ratings

Novelty
-
Significance
-
Scientific rigor
-
Rate this paper

Recommended

No Data Available
No Data Available