A review of some sampling and aggregation strategies for basic statistical process monitoring

IM Zwetsloot, WH Woodall - Journal of Quality Technology, 2021 - Taylor & Francis
We review the long-established rational subgrouping principle for determining an effective
sampling plan for process monitoring. We present some other general advice that has been …

Detecting HTTP-based application layer DoS attacks on web servers in the presence of sampling

HH Jazi, H Gonzalez, N Stakhanova, AA Ghorbani - Computer Networks, 2017 - Elsevier
A recent escalation of application layer Denial of Service (DoS) attacks on the Internet has
quickly shifted the interest of the research community traditionally focused on network-based …

Analysis of the impact of sampling on NetFlow traffic classification

V Carela-Español, P Barlet-Ros, A Cabellos-Aparicio… - Computer Networks, 2011 - Elsevier
The traffic classification problem has recently attracted the interest of both network operators
and researchers. Several machine learning (ML) methods have been proposed in the …

Improving network anomaly detection via selective flow-based sampling

G Androulidakis, S Papavassiliou - IET communications, 2008 - IET
Sampling has become an essential component of scalable Internet traffic monitoring and
anomaly detection. A new flow-based sampling technique that focuses on the selection of …

A binning approach to quickest change detection with unknown post-change distribution

TS Lau, WP Tay, VV Veeravalli - IEEE Transactions on Signal …, 2018 - ieeexplore.ieee.org
The problem of quickest detection of a change in distribution is considered under the
assumption that the prechange distribution is known, and the postchange distribution is only …

A cusum change-point detection algorithm for non-stationary sequences with application to data network surveillance

VM De Oca, DR Jeske, Q Zhang, C Rendon… - Journal of Systems and …, 2010 - Elsevier
We adapt the classic cusum change-point detection algorithm to handle non-stationary
sequences that are typical with network surveillance applications. The proposed algorithm …

Cusum techniques for timeslot sequences with applications to network surveillance

DR Jeske, VM De Oca, W Bischoff… - Computational statistics & …, 2009 - Elsevier
We develop two cusum change-point detection algorithms for data network monitoring
applications where numerous and various performance and reliability metrics are available …

On mitigating sampling-induced accuracy loss in traffic anomaly detection systems

S Ali, IU Haq, S Rizvi, N Rasheed, U Sarfraz… - ACM SIGCOMM …, 2010 - dl.acm.org
Real-time Anomaly Detection Systems (ADSs) use packet sampling to realize traffic analysis
at wire speeds. While recent studies have shown that a considerable loss of anomaly …

An accurate sampling scheme for detecting SYN flooding attacks and portscans

M Korczynski, L Janowski… - 2011 IEEE International …, 2011 - ieeexplore.ieee.org
In this paper, we propose an accurate sampling scheme for defeating SYN flooding attacks
as well as TCP portscan activity. The scheme examines TCP segments to find at least one of …

Using selective sampling for the support of scalable and efficient network anomaly detection

G Androulidakis, V Chatzigiannakis… - 2007 IEEE …, 2007 - ieeexplore.ieee.org
Sampling has become an essential component of scalable Internet traffic monitoring and
anomaly detection. In this paper we consider the problem of studying and evaluating the …