Loading...

Anomaly Based Intrusion Detection in Computer Networks Using Generative Adversarial Networks

Heidary, Milad | 2020

957 Viewed
  1. Type of Document: M.Sc. Thesis
  2. Language: Farsi
  3. Document No: 53615 (19)
  4. University: Sharif University of Technology
  5. Department: Computer Engineering
  6. Advisor(s): Hemmatyar, Ali Mohammad Afshin
  7. Abstract:
  8. Due to the rapid development of computer networks, security is a major concern. Methods of intruding computer networks are also rapidly developing, and there is a new method every day. These facts corroborate the need for new and more intelligent mechanisms for detecting intrusion. To detect intrusion, one must analyze the network traffic. The most used traditional methods of traffic separation are port-based and payload based detection. The former is not so efficient, and the latter is not only inefficient but also violates the privacy of users. Unsatisfied by such methods, researchers adopted machine learning techniques and tried to develop new solutions for detecting intrusion. Methods developed so far perform better than traditional ones but still are not good enough for modern networks. Considering the vast advances in machine learning techniques, including deep learning, leading to even better methods. The problem is that these new methods have high false-positive rates. In this research, we will propose and evaluate a solution based on a new technique in machine learning called generative adversarial networks. This method is accurate enough and also has a low false-positive rate
  9. Keywords:
  10. Computer Networks ; Generative Adversarial Networks ; Anomaly Detection ; Intrusion Detection System ; Network Security

 Digital Object List

 Bookmark

  • 1 مقدمه
    • 1.1 بیان مساله
    • 1.2 راهکارهای پیشنهادی
      • 1.2.1 استفاده از یک شبکه مولد متخاصم
      • 1.2.2 استفاده از یک شبکه مولد متخاصم دو طرفه
      • 1.2.3 راهکار ترکیبی
    • 1.3 ساختار پایان‌نامه
  • 2 ناهنجاری و نفوذ
    • 2.1 ناهنجاری
    • 2.2 خروجی روش‌های تشخیص ناهنجاری
    • 2.3 انواع حملات
    • 2.4 چالش‌های سیستم تشخیص نفوذ
  • 3 یادگیری ماشین
    • 3.1 وظایف یادگیری
    • 3.2 مراحل یادگیری
    • 3.3 سناریو‌های یادگیری
    • 3.4 الگوریتم‌های یادگیری ماشین
      • 3.4.1 ماشین بردار پشتیبان
      • 3.4.2 شبکه‌های عصبی و یادگیری عمیق
      • 3.4.3 خود‌کدگذار غیر‌متقارن
      • 3.4.4 شبکه‌های عصبی بازگشتی
      • 3.4.5 حافظه طولانی کوتاه‌مدت
  • 4 راهکار‌های پیشین
    • 4.1 انواع سامانه‌های تشخیص نفوذ بر مبنای نظارت
    • 4.2 انواع سامانه‌های تشخیص نفوذ بر مبنای روش
    • 4.3 روش‌های مبتنی بر آمار
    • 4.4 روش‌های مبتنی بر خوشه‌بندی
    • 4.5 روش‌های مبتنی بر ماشین با حالات متناهی
    • 4.6 روش‌های مبتنی بر طبقه‌بندی
    • 4.7 روش‌های مبتنی بر نظریه اطلاعات
  • 5 راهکار پیشنهادی
    • 5.1 شبکه‌های مولد متخاصم
    • 5.2 راهکارها
      • 5.2.1 استفاده از یک شبکه مولد متخاصم
      • 5.2.2 استفاده از یک شبکه مولد متخاصم دو طرفه
      • 5.2.3 راهکار ترکیبی
  • 6 ارزیابی
    • 6.1 ابزار
    • 6.2 دادگان
    • 6.3 ارزیابی
      • 6.3.1 استفاده از یک شبکه مولد متخاصم
      • 6.3.2 استفاده از یک شبکه مولد متخاصم دو طرفه
      • 6.3.3 راهکار ترکیبی
  • 7 نتیجه‌گیری و کارهای آتی
  • کتاب‌نامه
  • واژه‌نامه‌ی فارسی به انگلیسی
  • واژه‌نامه‌ی انگلیسی به فارسی
...see more