Anomaly Detection Analysis using Repository based on Inverted Index 


Vol. 45,  No. 3, pp. 294-302, Mar.  2018
10.5626/JOK.2018.45.3.294


PDF

  Abstract

With the emergence of the new service industry due to the development of information and communication technology, cyber space risks such as personal information infringement and industrial confidentiality leakage have diversified, and the security problem has emerged as a critical issue. In this paper, we propose a behavior-based anomaly detection method that is suitable for real-time and large-volume data analysis technology. We show that the proposed detection method is superior to existing signature security countermeasures that are based on large-capacity user log data according to in-company personal information abuse and internal information leakage. As the proposed behavior-based anomaly detection method requires a technique for processing large amounts of data, a real-time search engine is used, called Elasticsearch, which is based on an inverted index. In addition, statistical based frequency analysis and preprocessing were performed for data analysis, and the DBSCAN algorithm, which is a density based clustering method, was applied to classify abnormal data with an example for easy analysis through visualization. Unlike the existing anomaly detection system, the proposed behavior-based anomaly detection technique is promising as it enables anomaly detection analysis without the need to set the threshold value separately, and was proposed from a statistical perspective.


  Statistics
Cumulative Counts from November, 2022
Multiple requests among the same browser session are counted as one view. If you mouse over a chart, the values of data points will be shown.


  Cite this article

[IEEE Style]

J. Park, W. Cho, K. Kim, "Anomaly Detection Analysis using Repository based on Inverted Index," Journal of KIISE, JOK, vol. 45, no. 3, pp. 294-302, 2018. DOI: 10.5626/JOK.2018.45.3.294.


[ACM Style]

Jumi Park, Weduke Cho, and Kangseok Kim. 2018. Anomaly Detection Analysis using Repository based on Inverted Index. Journal of KIISE, JOK, 45, 3, (2018), 294-302. DOI: 10.5626/JOK.2018.45.3.294.


[KCI Style]

박주미, 조위덕, 김강석, "역방향 인덱스 기반의 저장소를 이용한 이상 탐지 분석," 한국정보과학회 논문지, 제45권, 제3호, 294~302쪽, 2018. DOI: 10.5626/JOK.2018.45.3.294.


[Endnote/Zotero/Mendeley (RIS)]  Download


[BibTeX]  Download



Search




Journal of KIISE

  • ISSN : 2383-630X(Print)
  • ISSN : 2383-6296(Electronic)
  • KCI Accredited Journal

Editorial Office

  • Tel. +82-2-588-9240
  • Fax. +82-2-521-1352
  • E-mail. chwoo@kiise.or.kr