首页    期刊浏览 2025年01月06日 星期一
登录注册

文章基本信息

  • 标题:An Improved Kernel Clustering Algorithm for Mixed-Type Data in Network Forensic
  • 本地全文:下载
  • 作者:Min Ren ; Peiyu Liu ; Zhihao Wang
  • 期刊名称:International Journal of Security and Its Applications
  • 印刷版ISSN:1738-9976
  • 出版年度:2016
  • 卷号:10
  • 期号:1
  • 页码:343-354
  • DOI:10.14257/ijsia.2016.10.1.31
  • 出版社:SERSC
  • 摘要:Clustering algorithm is a common analysis technology for network forensics, which, lacking of any prior knowledge, can effectively find out the invasions by analyzing the collected real-time communication data flowing through the network. This paper proposed an improved dynamic kernel clustering algorithm for mixed numeric and categorical network communication data. First, centroid prototype based on the mean and distribution centroid was put forward to represent the cluster center. Then by using Gaussian kernel function, the paper introduced a new dissimilarity measure between the data object and the centroid prototype in combination with the significance of different categorical values. On this basis, the objective function was defined, which took into account both the compact degree in a cluster and the discrete degree among the clusters. After that an improved kernel clustering algorithm was designed. In the process of clustering, centroid prototype and the value of the clustering parameter dynamically updated for a better description of the characteristics of clusters' change. Finally, in order to verify the feasibility and effectiveness of the algorithm, the paper further applied it to network forensics, and the experimental results showed that the method could mine the intrusion behavior more accurately.
  • 关键词:Kernel Clustering; Gaussian Kernel; Mixed-type Data; Network Forensics
国家哲学社会科学文献中心版权所有