Research Article

Integrating Traffics with Network Device Logs for Anomaly Detection

Table 5

The detection results over XSS attack.

XSSFPFN

10-fold KNN for traffics8.2%5.6%
10-fold SVM for traffics8.6%5.8%
10-fold KNN for logs9.1%9.9%
10-fold SVM for logs9.0%8.6%
10-fold SVM for logs-and-traffics5.2%6.3%
10-fold KNN for logs-and-traffics6.2%3.6%
TLCD (GBDT)4.3%2.5%