Anomaly-Based Detection of System-Level Threats and Statistical Analysis

Himanshu Mishra,Ram Kumar Karsh,K. Pavani
DOI: https://doi.org/10.1007/978-981-13-9680-9_23
2019-12-01
Abstract:This paper presents various parameters for the analysis of threats to any network or system. These parameters are based on the anomalous behavior of the system. To characterize the behavior of the system connected to the Internet, we need to consider a number of incoming and outgoing packets, the process running in the background and system response which include CPU utilization and RAM utilization. Dataset is collected for the above-mentioned parameter under the normal condition and under the condition of any cyber-attack or threat. Based on the deviation in the values under two conditions, another statistical parameter entropy is calculated. This will helps us to identify the type of threats.
What problem does this paper attempt to address?