Loading...
Anomaly Based Intrusion Detection in Computer Networks Using Generative Adversarial Networks
Heidary, Milad | 2020
957
Viewed
- Type of Document: M.Sc. Thesis
- Language: Farsi
- Document No: 53615 (19)
- University: Sharif University of Technology
- Department: Computer Engineering
- Advisor(s): Hemmatyar, Ali Mohammad Afshin
- Abstract:
- Due to the rapid development of computer networks, security is a major concern. Methods of intruding computer networks are also rapidly developing, and there is a new method every day. These facts corroborate the need for new and more intelligent mechanisms for detecting intrusion. To detect intrusion, one must analyze the network traffic. The most used traditional methods of traffic separation are port-based and payload based detection. The former is not so efficient, and the latter is not only inefficient but also violates the privacy of users. Unsatisfied by such methods, researchers adopted machine learning techniques and tried to develop new solutions for detecting intrusion. Methods developed so far perform better than traditional ones but still are not good enough for modern networks. Considering the vast advances in machine learning techniques, including deep learning, leading to even better methods. The problem is that these new methods have high false-positive rates. In this research, we will propose and evaluate a solution based on a new technique in machine learning called generative adversarial networks. This method is accurate enough and also has a low false-positive rate
- Keywords:
- Computer Networks ; Generative Adversarial Networks ; Anomaly Detection ; Intrusion Detection System ; Network Security
-
محتواي کتاب
- view
- 1 مقدمه
- 1.1 بیان مساله
- 1.2 راهکارهای پیشنهادی
- 1.2.1 استفاده از یک شبکه مولد متخاصم
- 1.2.2 استفاده از یک شبکه مولد متخاصم دو طرفه
- 1.2.3 راهکار ترکیبی
- 1.3 ساختار پایاننامه
- 2 ناهنجاری و نفوذ
- 2.1 ناهنجاری
- 2.2 خروجی روشهای تشخیص ناهنجاری
- 2.3 انواع حملات
- 2.4 چالشهای سیستم تشخیص نفوذ
- 3 یادگیری ماشین
- 3.1 وظایف یادگیری
- 3.2 مراحل یادگیری
- 3.3 سناریوهای یادگیری
- 3.4 الگوریتمهای یادگیری ماشین
- 3.4.1 ماشین بردار پشتیبان
- 3.4.2 شبکههای عصبی و یادگیری عمیق
- 3.4.3 خودکدگذار غیرمتقارن
- 3.4.4 شبکههای عصبی بازگشتی
- 3.4.5 حافظه طولانی کوتاهمدت
- 4 راهکارهای پیشین
- 4.1 انواع سامانههای تشخیص نفوذ بر مبنای نظارت
- 4.2 انواع سامانههای تشخیص نفوذ بر مبنای روش
- 4.3 روشهای مبتنی بر آمار
- 4.4 روشهای مبتنی بر خوشهبندی
- 4.5 روشهای مبتنی بر ماشین با حالات متناهی
- 4.6 روشهای مبتنی بر طبقهبندی
- 4.7 روشهای مبتنی بر نظریه اطلاعات
- 5 راهکار پیشنهادی
- 5.1 شبکههای مولد متخاصم
- 5.2 راهکارها
- 5.2.1 استفاده از یک شبکه مولد متخاصم
- 5.2.2 استفاده از یک شبکه مولد متخاصم دو طرفه
- 5.2.3 راهکار ترکیبی
- 6 ارزیابی
- 6.1 ابزار
- 6.2 دادگان
- 6.3 ارزیابی
- 6.3.1 استفاده از یک شبکه مولد متخاصم
- 6.3.2 استفاده از یک شبکه مولد متخاصم دو طرفه
- 6.3.3 راهکار ترکیبی
- 7 نتیجهگیری و کارهای آتی
- کتابنامه
- واژهنامهی فارسی به انگلیسی
- واژهنامهی انگلیسی به فارسی
