• DocumentCode
    1626669
  • Title

    VoIP anomaly detection by combining OCSVM and PSO algorithm

  • Author

    Miandare, M.S. ; Jalili, Saeed

  • Author_Institution
    Fac. of Electr. & Comput. Eng., Tarbiat Modares Univ., Tehran, Iran
  • fYear
    2012
  • Firstpage
    1038
  • Lastpage
    1043
  • Abstract
    Voice over Internet Protocol (VoIP) is an emerging technology caused a revolution in the telecommunication industry. Because of the nature of its protocols (e.g., using text-based messages and transporting over UDP), VoIP is more susceptible to Denial of Service and Social threats than other internet-based services. Hence, the VoIP security has become one of the most important issues of concern and attracted renewed interest in much of the recent researches. In this paper, we use one-class support vector machines (OCSVM) for detecting anomalies in VoIP networks, in which, a few parameters (such as error control parameter and kernel parameter) significantly affect anomaly detection accuracy, and need to be tuned. The proposed method takes the advantages of particle swarm optimization (PSO) algorithm on parameters optimization. To evaluate candidate parameters, we suggest a new fitness function that considers both the overfitting and the underfitting problems. The results of experiments show that after determining the optimal value of parameters, the final decision function will bring in a high detection rate with a lower false positive rate.
  • Keywords
    Internet telephony; computer network security; particle swarm optimisation; support vector machines; Internet-based services; OCSVM; PSO algorithm; VoIP anomaly detection; VoIP security; denial of service; error control parameter; kernel parameter; one-class support vector machines; particle swarm optimization algorithm; social threats; telecommunication industry; text-based messages; voice over Internet protocol; Feature extraction; Particle swarm optimization; Protocols; Servers; Support vector machines; Training; Tuning; Anomaly detection; Particle swarm optimization; Support vector machine; Voice over IP;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Telecommunications (IST), 2012 Sixth International Symposium on
  • Conference_Location
    Tehran
  • Print_ISBN
    978-1-4673-2072-6
  • Type

    conf

  • DOI
    10.1109/ISTEL.2012.6483139
  • Filename
    6483139