Intrusion Detection Forecasting Using Time Series for Improving Cyber Defence

Abstract

The strength of time series modeling is generally not used in almost all current intrusion detection and prevention systems. By having time series models, system administrators will be able to better plan resource allocation and system readiness to defend against malicious activities. In this paper, we address the knowledge gap by investigating the possible inclusion of a statistical based time series modeling that can be seamlessly integrated into existing cyber defense system. Cyber-attack processes exhibit long range dependence and in order to investigate such properties a new class of Generalized Autoregressive Moving Average (GARMA) can be used. In this paper, GARMA (1, 1; 1, ±) model is fitted to cyber-attack data sets. Two different estimation methods are used. Point forecasts to predict the attack rate possibly hours ahead of time also has been done and the performance of the models and estimation methods are discussed. The investigation of the case-study will confirm that by exploiting the statistical properties, it is possible to predict cyber-attacks (at least in terms of attack rate) with good accuracy. This kind of forecasting capability would provide sufficient early-warning time for defenders to adjust their defense configurations or resource allocations.

Authors and Affiliations

Azween Abdullah *| School of Computing and IT, Taylors University, Subang Jaya, Selangor, Malaysia, Thulasy Ramiah Pillai| School of Computing and IT, Taylors University, Subang Jaya, Selangor, Malaysia, Cai Long Zheng| Unitar International University, Petaling Jaya, Selangor, Malaysia, Vahideh Abaeian| School of Business, Taylors University, Subang Jaya, Selangor, Malaysia

Keywords

Related Articles

Development Of HealthCare System For Smart Hospital Based On UML and XML Technology

The convergence of information technology systems in health care system building is causing us to look at more effective integration of technologies. Facing increased competition, tighter spaces, staff retention and redu...

Rainfall estimation based on NAW approach using MSG-SEVIRI images: An application in north Algeria

In this work, we will adapt the NAW (Nagri, Adler and Wetzel) precipitation, estimation approach to the north Algeria events using the Meteosat Second Generation (MSG) satellite images. The tests are carried out on seven...

Classification of Leaf Type Using Artificial Neural Networks

A number of shape features for automatic plant recognition based on digital image processing have been proposed by Pauwels et al. in 2009. Then Silva et al in 2014 have presented database comprises 40 different plant spec...

Comparative Study of Krill Herd, Firefly and Cuckoo Search Algorithms for Unimodal and Multimodal Optimization

Today, in computer science, a computational challenge exists in finding a globally optimized solution from an enormously large search space. Various metaheuristic methods can be used for finding the solution in a large s...

The Classification of Diseased Trees by Using kNN and MLP Classification Models According to the Satellite Imagery

In this study, the Japanese Oak and Pine Wilt in forested areas of Japan was classified into two group as diseased trees and all other land cover area according to the 6 attributes in the spectral data set of the forest....

Download PDF file
  • EP ID EP765
  • DOI -
  • Views 482
  • Downloads 23

How To Cite

Azween Abdullah *, Thulasy Ramiah Pillai, Cai Long Zheng, Vahideh Abaeian (2015). Intrusion Detection Forecasting Using Time Series for Improving Cyber Defence. International Journal of Intelligent Systems and Applications in Engineering, 3(1), 28-33. https://europub.co.uk/articles/-A-765