Search papers, labs, and topics across Lattice.
This paper investigates unsupervised anomaly detection in network traffic using $\beta$-VAEs on the NSL-KDD dataset, comparing anomaly detection performance using latent space distances and reconstruction error. The study finds that utilizing the latent space structure via distance metrics is more effective for anomaly classification compared to relying solely on reconstruction error. The results demonstrate the potential of latent space exploitation for unsupervised intrusion detection.
Latent space distances in $\beta$-VAEs can outperform reconstruction error for unsupervised anomaly detection in network traffic.
As Operational Technology increasingly integrates with Information Technology, the need for Intrusion Detection Systems becomes more important. This paper explores an unsupervised approach to anomaly detection in network traffic using $β$-Variational Autoencoders on the NSL-KDD dataset. We investigate two methods: leveraging the latent space structure by measuring distances from test samples to the training data projections, and using the reconstruction error as a conventional anomaly detection metric. By comparing these approaches, we provide insights into their respective advantages and limitations in an unsupervised setting. Experimental results highlight the effectiveness of latent space exploitation for classification tasks.