0% Complete
فارسی
Home
/
شانزدهمین کنفرانس بین المللی فناوری اطلاعات و دانش
Kalman Filter–Based Anomaly Detection for User Authentication Failures in Enterprise Logs
Authors :
Somayeh Soltani
1
Hossein Nikdel
2
1- دانشگاه تربت حیدریه
2- دانشگاه صنعتی شاهرود
Keywords :
Anomaly detection،Brute-force attack،Time-series prediction،Kalman filter،Login failure
Abstract :
User authentication failures sometimes indicate malicious attempts such as brute-force or credential-stuffing. Unfortunately, simplistic threshold-based alarms yield high false-positive rates in dynamic enterprise environments. This paper presents a systematic study of Kalman filter–based anomaly detection applied to a 60-day real-world audit-log dataset. It compares four variants of the filter—simple Local Level (LL), Local Level with Trend (LLT), Local Level with Seasonal component (LLS), and Local Level with both Trend and Seasonal components (LLTS)—across multiple time-aggregation windows (1, 2, 8, and 24 hours). Each configuration is assessed using three complementary metrics: outlier count (detection sensitivity), coefficient of determination (R²), and root-mean-squared error (RMSE). Experimental results show that the LL variant with a 2-hour window achieves the best trade-off, yielding R² = 0.9894, RMSE = 5.97, and no detected outliers (i.e., zero false positives).
Papers List
List of archived papers
Improving Long-Term Engagement of Insurance Brokerages by Providing Gamified Configurations Based on The Delphi Method
Hosein Bayati - Fattaneh Taghiyareh - Sahand Hashemi
A High-Speed Quantum Reversible Controlled Adder/Subtractor Circuit
Negin Mashayekhi - Mohammad Reza Reshadinezhad - Shekoofeh Moghimi
Improving hypergraph attention and hypergraph convolution networks
Mustafa Mohammadi Gharasuie - Mahmood Shabankhah - Ali Kamandi
A Model-Driven Approach for Automatic Generation of Android Tourism Applications
Sara Adib - Bahman Zamani
Detection of Backdoor Attacks in Neural Networks Using Input Optimization
Parsa Hashemi Khorsand - Ahmad Nickabadi
جانمایی توزیعشده محتوا برای ذخیرهسازی موقت در شبکههای سلولی کوچک با حضور کاربران مخرب
زهرا رشیدی - دکتر وصال حکمی - حانیه سلمانطاهری زهرا رشیدی - وصال حکمی - حانیه سلمانطاهری -
Wireless Virtual-Reality by considering Hybrid Beamforming in IEEE802.11ay standard
Nasim Alikhani - Abbas Mohammadi
تشخیص حمله تزریق داده کاذب با روش OCD در شبکه هوشمند برق
محدثه جلیلی سنجرانی - سعید جلیلی - محمدکاظم شیخ الاسلامی
Presentation of a New Decoder Based on Quantum Cellular Automata Technology Along with an Analysis of Energy Consumption
- - -
A Comparative Evaluation of Machine Learning Models for Anomaly-Based IDS in IoT Networks
Seyed Amir Mousavi - Mostafa Sadeghi - Mohammad Sadeq Sirjani
more
Samin Hamayesh - Version 43.8.0