Network Anomaly Detection

Project Details

  • Role : Team Member

  • Details : As part of Master study we worked on this project.Network Anomaly Detection is the way to restrict the attacks on the network. There are two types of intrusion detection possible: signature based and anomaly based. Signature based detection system works with available pattern of the attack; it contains a database of previously known attack and if the pattern matches the traffic data then raised the alarm. The anomaly based detection system works on the concept of creating models, which can differentiate the normal and abnormal traffic or behaviour.

    Project Life cycle
    - Phase 0: Network Defination, Traffic Generation, Data Preparation
    - Phase 1: Single Network Analysis
    - Phase 2: Cooperative Network Analysis
    - Comparision 1: Comparision of Phase 1 and Phase 2 result
    - Phase 3: Cooperative Network Analysis with Anonymization
    - Comparision 2: Comparision of Phase 1 and Phase 3 result