Anomaly Detection in IaaS Clouds

作者: Frank Doelitzscher , Martin Knahl , Christoph Reich , Nathan Clarke

DOI: 10.1109/CLOUDCOM.2013.57

关键词:

摘要: Security is still a major concern in Cloud computing, especially the detection of nefarious use or abuse cloud instances. One reason for this, ever-growing complexity and dynamic underlying system design architecture. To be able to detect misuse instances, this work presents an anomaly Infrastructure as Service Clouds. It based on customers' usage behaviour analysis. Neural networks are used analyse learn normal customers, then anomalies which could originate from security incident caused by overtaken virtual machine. increases transparency customers about their instances supports provider infrastructure. A simulation environment prototype get presented. Experiments validate effectiveness proposed system.

参考文章(11)
Christopher M. Bishop, Neural networks for pattern recognition ,(1995)
Frank Doelitzscher, Christian Fischer, Denis Moskal, Christoph Reich, Martin Knahl, Nathan Clarke, Validating Cloud Infrastructure Changes by Cloud Audits world congress on services. pp. 377- 384 ,(2012) , 10.1109/SERVICES.2012.12
Long Zhang, Jinsong Wang, Sheng Lin, Design of the Network Traffic Anomaly Detection System in Cloud Computing Environment international symposium on information science and engineering. pp. 16- 19 ,(2012) , 10.1109/ISISE.2012.13
Anthony Sulistio, Christoph Reich, Frank Doelitzscher, Cloud Infrastructure & Applications --- CloudIA international conference on cloud computing. ,vol. 5931, pp. 583- 588 ,(2009) , 10.1007/978-3-642-10665-1_56
Chengwei Wang, Vanish Talwar, Karsten Schwan, Parthasarathy Ranganathan, Online detection of utility cloud anomalies using metric distributions network operations and management symposium. pp. 96- 103 ,(2010) , 10.1109/NOMS.2010.5488443
Husanbir S. Pannu, Jianguo Liu, Song Fu, AAD: Adaptive Anomaly Detection System for Cloud Computing Infrastructures symposium on reliable distributed systems. pp. 396- 397 ,(2012) , 10.1109/SRDS.2012.3
Marco Balduzzi, Jonas Zaddach, Davide Balzarotti, Engin Kirda, Sergio Loureiro, A security analysis of amazon's elastic compute cloud service acm symposium on applied computing. pp. 1427- 1434 ,(2012) , 10.1145/2245276.2232005
Alberto Dainotti, Alistair King, kc Claffy, Ferdinando Papale, Antonio Pescapè, Analysis of a "/0" stealth scan from a botnet internet measurement conference. pp. 1- 14 ,(2012) , 10.1145/2398776.2398778
Frank Doelitzscher, Christoph Reich, Martin Knahl, Alexander Passfall, Nathan Clarke, An agent based business aware incident detection system for cloud environments Journal of Cloud Computing. ,vol. 1, pp. 9- ,(2012) , 10.1186/2192-113X-1-9