Bracha Shapira

Senior Academic

Ensemble of feature chains for anomaly detection

Lena Tenenboim-Chekina, Lior Rokach,Bracha Shapira

Along with recent technological advances more and more new threats and advanced cyber-attacks appear unexpectedly. Developing methods which allow for identification and defense against such unknown threats is of great importance. In this paper we propose new ensemble method (which improves over the known cross-feature analysis, CFA, technique) allowing solving anomaly detection problem in semi-supervised settings using well established supervised learning algorithms. Theoretical correctness of the proposed method is demonstrated. Empirical evaluation results on Android malware datasets demonstrate effectiveness of the proposed approach and its superiority against the original CFA detection method.

Publication language English
Pages 295-306
Publication status Published - 01.01.2013

Keywords

Android
Anomaly detection
Ensemble methods
Machine learning
Malware
Network monitoring
Probabilistic methods

ASJC Scopus subject areas

Theoretical Computer Science
General Computer Science