TY - GEN
T1 - Uncertainty Aware Clustering for Behaviour in Enterprise Networks
AU - Bakoben, Maha
AU - Adams, Niall
AU - Bellotti, Anthony
N1 - Publisher Copyright:
© 2016 IEEE.
PY - 2016/7/2
Y1 - 2016/7/2
N2 - Understanding relationships between entities in a computer network is an important task in enterprise cyber-security. This paper presents a novel procedure for exploring similarity relationships in Netflow behaviour-Activity over time. We demonstrate a two-stage procedure. First, a statistical model is used as a summary of raw data. Naturally, the parameters of such a model are subject to estimation uncertainty. The second stage develops a similarity metric that incorporates this uncertainty. Standard clustering procedures then become available. We illustrate the method using connection-based data derived from Netflow records, from a recently released public domain data set.
AB - Understanding relationships between entities in a computer network is an important task in enterprise cyber-security. This paper presents a novel procedure for exploring similarity relationships in Netflow behaviour-Activity over time. We demonstrate a two-stage procedure. First, a statistical model is used as a summary of raw data. Naturally, the parameters of such a model are subject to estimation uncertainty. The second stage develops a similarity metric that incorporates this uncertainty. Standard clustering procedures then become available. We illustrate the method using connection-based data derived from Netflow records, from a recently released public domain data set.
UR - http://www.scopus.com/inward/record.url?scp=85015153689&partnerID=8YFLogxK
U2 - 10.1109/ICDMW.2016.0045
DO - 10.1109/ICDMW.2016.0045
M3 - Conference contribution
AN - SCOPUS:85015153689
T3 - IEEE International Conference on Data Mining Workshops, ICDMW
SP - 269
EP - 272
BT - Proceedings - 16th IEEE International Conference on Data Mining Workshops, ICDMW 2016
A2 - Domeniconi, Carlotta
A2 - Gullo, Francesco
A2 - Bonchi, Francesco
A2 - Bonchi, Francesco
A2 - Domingo-Ferrer, Josep
A2 - Baeza-Yates, Ricardo
A2 - Baeza-Yates, Ricardo
A2 - Baeza-Yates, Ricardo
A2 - Zhou, Zhi-Hua
A2 - Wu, Xindong
PB - IEEE Computer Society
T2 - 16th IEEE International Conference on Data Mining Workshops, ICDMW 2016
Y2 - 12 December 2016 through 15 December 2016
ER -