Open Set Recognition for Malware Traffic via Predictive Uncertainty

计算机科学 恶意软件 人工智能 机器学习 深度学习 集合(抽象数据类型) 试验装置 人工神经网络 基线(sea) 数据挖掘 计算机安全 海洋学 地质学 程序设计语言
作者
Xue Li,Jinlong Fei,Jiansheng Xie,Ding Li,Heng Jiang,Ruonan Wang,Zan Qi
出处
期刊:Electronics [Multidisciplinary Digital Publishing Institute]
卷期号:12 (2): 323-323
标识
DOI:10.3390/electronics12020323
摘要

Existing machine learning-based malware traffic recognition techniques can effectively detect abnormal behaviors in the network. However, almost all of them focus on a closed-set scenario in which the data used for training and testing come from the same label space. Since sophisticated malware and advanced persistent threats are evolving, it is impossible to exhaust all attacks to train a complete recognition model under the existing technical conditions. Therefore, recognition in the real network is an open-set problem, i.e., the recognition system should identify unknown and unseen attacks at test time. In this paper, we propose an uncertainty-aware method to identify known malicious traffic accurately and handle unknown traffic effectively. This method employs predictive uncertainty in deep learning as an indicator for unknown class detection. The predictive uncertainty represents the confidence in neural network predictions. In particular, the Deep Evidence Malware Traffic Recognition (DEMTR) model is presented to provide the multi-classification probability and predictive uncertainty in open-set scenarios using evidential deep learning. We demonstrate the performance of DEMTR on the MCFP dataset. Experimental results indicate that the proposed model outperforms the baseline methods in accuracy and F1-score.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
1秒前
1秒前
研友_VZG7GZ应助科研通管家采纳,获得10
1秒前
1秒前
1秒前
sciscisci发布了新的文献求助10
1秒前
1秒前
1秒前
泊远轩应助科研通管家采纳,获得10
1秒前
Owen应助科研通管家采纳,获得10
2秒前
端庄亦巧发布了新的文献求助10
2秒前
CipherSage应助科研通管家采纳,获得30
2秒前
酷波er应助科研通管家采纳,获得10
2秒前
NAAKOO发布了新的文献求助10
2秒前
在水一方应助科研通管家采纳,获得10
2秒前
泊远轩应助科研通管家采纳,获得10
2秒前
cy发布了新的文献求助10
2秒前
含蓄小蕊发布了新的文献求助20
2秒前
2秒前
桐桐应助科研通管家采纳,获得10
2秒前
归尘发布了新的文献求助10
3秒前
852应助Mine采纳,获得10
3秒前
量子星尘发布了新的文献求助10
3秒前
语安完成签到,获得积分10
3秒前
4秒前
景向完成签到,获得积分10
5秒前
科研通AI6.1应助安静采纳,获得10
6秒前
小锦鲤发布了新的文献求助10
6秒前
kydd完成签到,获得积分10
8秒前
斡隑盄赵完成签到,获得积分10
8秒前
烟花应助李三采纳,获得10
8秒前
9秒前
隔壁小孩完成签到,获得积分10
9秒前
ddeqbbw完成签到,获得积分10
9秒前
收声完成签到,获得积分20
9秒前
凌霜完成签到,获得积分10
9秒前
11秒前
wanwu完成签到,获得积分10
11秒前
sky发布了新的文献求助10
11秒前
雷雷雷完成签到,获得积分20
11秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Kinesiophobia : a new view of chronic pain behavior 2000
Burger's Medicinal Chemistry, Drug Discovery and Development, Volumes 1 - 8, 8 Volume Set, 8th Edition 1800
Cronologia da história de Macau 1600
文献PREDICTION EQUATIONS FOR SHIPS' TURNING CIRCLES或期刊Transactions of the North East Coast Institution of Engineers and Shipbuilders第95卷 1000
BRITTLE FRACTURE IN WELDED SHIPS 1000
Lloyd's Register of Shipping's Approach to the Control of Incidents of Brittle Fracture in Ship Structures 1000
热门求助领域 (近24小时)
化学 材料科学 医学 生物 工程类 有机化学 纳米技术 计算机科学 化学工程 生物化学 物理 复合材料 内科学 催化作用 物理化学 光电子学 细胞生物学 基因 电极 遗传学
热门帖子
关注 科研通微信公众号,转发送积分 6146239
求助须知:如何正确求助?哪些是违规求助? 7973085
关于积分的说明 16562057
捐赠科研通 5257462
什么是DOI,文献DOI怎么找? 2807151
邀请新用户注册赠送积分活动 1787661
关于科研通互助平台的介绍 1656549