Research Article

CLASSIFICATION OF VISITORS AND IDENTIFYING INTRUDERS IN A NETWORK

Volume: 9 Number: 1 August 2, 2026
EN

CLASSIFICATION OF VISITORS AND IDENTIFYING INTRUDERS IN A NETWORK

Abstract

In today's digital ecosystem, accurately identifying user intentions on commercial websites is essential for enhancing security and optimizing user experience. This research introduces a phased classification approach for distinguishing website users into distinct groups based on behavioral patterns, addressing the nuanced challenge of distinguishing between genuine customers, casual browsers, and potential intruders. The proposed two-phase classification framework first differentiates customers from browsers, followed by a second phase that classifies browsers into either normal or suspicious users. This staged approach improves accuracy by focusing on progressively finer distinctions between user types, capturing subtle behavioral nuances that might otherwise be overlooked in a single-step model. Due to limitations of existing datasets, we generated a synthetic dataset that simulates realistic user behaviors, incorporating diverse features such as session duration, pages viewed, VPN usage, and geolocation consistency. A CatBoost classifier was employed in each phase for its ability to handle categorical data effectively. Experimental results demonstrate that this two-phase model achieves high accuracy, underscoring its potential for precise, context-aware user segmentation in online environments. This work offers a significant contribution to cybersecurity and user segmentation, advancing strategies for dynamically distinguishing user groups in digital spaces.

Keywords

References

  1. Rakan A. Alsowail and Taher Al-Shehari. Empirical detection techniques of insider threat incidents. IEEE Access, 8:78385–78402, 2020.
  2. Duc C. Le and Nur Zincir-Heywood. Exploring adversarial properties of insider threat detection. In 2020 IEEE Conference on Communications and Network Security (CNS), pages 1–9, 2020.
  3. Fatima Rashed Alzaabi and Abid Mehmood. A review of recent advances, challenges, and opportunities in malicious insider threat detection using machine learning methods. IEEE Access, 12:30907–30927, 2024.
  4. Rafael Bruno Peccatiello, João José Costa Gondim, and Luís Paulo Faina Garcia. Applying one-class algorithms for data stream-based insider threat detection. IEEE Access, 11:70560–70573, 2023.
  5. Yangyang Li and Yaping Su. The insider threat detection method of university website clusters based on machine learning. In 2023 6th International Conference on Artificial Intelligence and Big Data (ICAIBD), pages 560–565, 2023.
  6. Anupam Mittal and Urvashi Garg. Prediction and detection of insider threat detection using emails: A comparision. In 2023 Second International Conference on Electrical, Electronics, Information and Communication Technologies (ICEEICT), pages 01–06, 2023.
  7. Syed Khurram Jah Rizvi, Khawaja Faisal Javed, and Muhammad Moazam. Casattention based iso/iec 15408–2 compliant continuous audit system for insider threat detection. In 2023 3rd International Conference on Artificial Intelligence (ICAI), pages 153–157, 2023.
  8. Samiha Besnaci, Mohamed Hafidi, and Mahnane Lamia. Dealing with extremly unbalanced data and detecting insider threats with deep neural networks. In 2023 International Conference on Advances in Electronics, Control and Communication Systems (ICAECCS), pages 1–6, 2023.

Details

Primary Language

English

Subjects

Artificial Intelligence (Other)

Journal Section

Research Article

Authors

Publication Date

August 2, 2026

Submission Date

September 9, 2025

Acceptance Date

July 24, 2026

Published in Issue

Year 2026 Volume: 9 Number: 1

APA
Hejazi, N., & Özdemir, E. (2026). CLASSIFICATION OF VISITORS AND IDENTIFYING INTRUDERS IN A NETWORK. International Journal of Informatics and Applied Mathematics, 9(1), 20-30. https://doi.org/10.53508/ijiam.1780395
AMA
1.Hejazi N, Özdemir E. CLASSIFICATION OF VISITORS AND IDENTIFYING INTRUDERS IN A NETWORK. IJIAM. 2026;9(1):20-30. doi:10.53508/ijiam.1780395
Chicago
Hejazi, Nada, and Enver Özdemir. 2026. “CLASSIFICATION OF VISITORS AND IDENTIFYING INTRUDERS IN A NETWORK”. International Journal of Informatics and Applied Mathematics 9 (1): 20-30. https://doi.org/10.53508/ijiam.1780395.
EndNote
Hejazi N, Özdemir E (August 1, 2026) CLASSIFICATION OF VISITORS AND IDENTIFYING INTRUDERS IN A NETWORK. International Journal of Informatics and Applied Mathematics 9 1 20–30.
IEEE
[1]N. Hejazi and E. Özdemir, “CLASSIFICATION OF VISITORS AND IDENTIFYING INTRUDERS IN A NETWORK”, IJIAM, vol. 9, no. 1, pp. 20–30, Aug. 2026, doi: 10.53508/ijiam.1780395.
ISNAD
Hejazi, Nada - Özdemir, Enver. “CLASSIFICATION OF VISITORS AND IDENTIFYING INTRUDERS IN A NETWORK”. International Journal of Informatics and Applied Mathematics 9/1 (August 1, 2026): 20-30. https://doi.org/10.53508/ijiam.1780395.
JAMA
1.Hejazi N, Özdemir E. CLASSIFICATION OF VISITORS AND IDENTIFYING INTRUDERS IN A NETWORK. IJIAM. 2026;9:20–30.
MLA
Hejazi, Nada, and Enver Özdemir. “CLASSIFICATION OF VISITORS AND IDENTIFYING INTRUDERS IN A NETWORK”. International Journal of Informatics and Applied Mathematics, vol. 9, no. 1, Aug. 2026, pp. 20-30, doi:10.53508/ijiam.1780395.
Vancouver
1.Nada Hejazi, Enver Özdemir. CLASSIFICATION OF VISITORS AND IDENTIFYING INTRUDERS IN A NETWORK. IJIAM. 2026 Aug. 1;9(1):20-3. doi:10.53508/ijiam.1780395

International Journal of Informatics and Applied Mathematics