亲爱的研友该休息了!由于当前在线用户较少,发布求助请尽量完整地填写文献信息,科研通机器人24小时在线,伴您度过漫漫科研夜!身体可是革命的本钱,早点休息,好梦!

Deep Learning-Based Reverse Method of Binary Protocol

计算机科学 领域(数学) 协议(科学) 人工智能 数据挖掘 入侵检测系统 逆向工程 鉴定(生物学) 网络安全 机器学习 计算机网络 生物 病理 医学 植物 程序设计语言 纯数学 替代医学 数学
作者
Chenglong Yang,Cai Fu,Yekui Qian,Hong Yao,Guanyun Feng,Lansheng Han
出处
期刊:Communications in computer and information science 卷期号:: 606-624 被引量:8
标识
DOI:10.1007/978-981-15-9129-7_42
摘要

With the growth of network equipment, the security of network access environment becomes particularly important. Many network security technologies, such as vulnerability mining, fuzzy testing and intrusion detection, have attracted more and more attention. However, the effectiveness of these security technologies will be greatly reduced in the face of unknown protocols. By automatically extracting the format information of unknown protocols through the protocol reverse technology, the processing capability of the above security technologies in the face of unknown protocols can be enhanced. In this paper, by analyzing the changing characteristics of protocol fields, a field sequence coding method is proposed, which is suitable for reflecting the field sequence characteristics of different protocols and can improve the generalization ability of the model. Using the above field sequence coding method, a field classification model for unknown protocols is implemented based on the LSTM-FCN network, which is widely used in time series classification tasks. Finally, a binary protocol reverse method based on deep learning is proposed. The method is based on the field classification model and realizes the division and type identification of unknown protocol fields according to the classification results. In the experiment, the field classification model has high accuracy and recall in different protocols, which shows that the model has the ability to identify the field type according to the changing characteristics of the field. The proposed protocol reverse method also accurately and quickly identifies the field and its type, proving the reverse ability of the method to unknown binary protocols.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
更新
PDF的下载单位、IP信息已删除 (2025-6-4)

科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
6秒前
阿亮发布了新的文献求助10
12秒前
25秒前
无辜笑容发布了新的文献求助10
27秒前
嘻嘻完成签到,获得积分10
44秒前
量子星尘发布了新的文献求助10
58秒前
元水云发布了新的文献求助30
1分钟前
1分钟前
andrele发布了新的文献求助10
1分钟前
zc98完成签到,获得积分10
1分钟前
8R60d8应助zc98采纳,获得10
1分钟前
andrele发布了新的文献求助10
1分钟前
元水云完成签到,获得积分10
2分钟前
桦奕兮完成签到 ,获得积分10
2分钟前
2分钟前
nsc发布了新的文献求助10
2分钟前
量子星尘发布了新的文献求助10
2分钟前
猪猪hero应助zc98采纳,获得10
3分钟前
3分钟前
勿惏发布了新的文献求助30
3分钟前
所所应助nsc采纳,获得30
3分钟前
3分钟前
3分钟前
scuter发布了新的文献求助10
3分钟前
scuter完成签到,获得积分10
3分钟前
3分钟前
3分钟前
3分钟前
nsc发布了新的文献求助30
3分钟前
bbdd2334发布了新的文献求助10
3分钟前
量子星尘发布了新的文献求助10
3分钟前
4分钟前
小马甲应助nsc采纳,获得10
4分钟前
4分钟前
Rabbit发布了新的文献求助10
4分钟前
4分钟前
5分钟前
kaka完成签到,获得积分10
5分钟前
nsc发布了新的文献求助10
5分钟前
思源应助nsc采纳,获得10
5分钟前
高分求助中
The Mother of All Tableaux Order, Equivalence, and Geometry in the Large-scale Structure of Optimality Theory 2400
Ophthalmic Equipment Market by Devices(surgical: vitreorentinal,IOLs,OVDs,contact lens,RGP lens,backflush,diagnostic&monitoring:OCT,actorefractor,keratometer,tonometer,ophthalmoscpe,OVD), End User,Buying Criteria-Global Forecast to2029 2000
Optimal Transport: A Comprehensive Introduction to Modeling, Analysis, Simulation, Applications 800
Official Methods of Analysis of AOAC INTERNATIONAL 600
ACSM’s Guidelines for Exercise Testing and Prescription, 12th edition 588
A Preliminary Study on Correlation Between Independent Components of Facial Thermal Images and Subjective Assessment of Chronic Stress 500
T/CIET 1202-2025 可吸收再生氧化纤维素止血材料 500
热门求助领域 (近24小时)
化学 材料科学 医学 生物 工程类 有机化学 生物化学 物理 内科学 纳米技术 计算机科学 化学工程 复合材料 遗传学 基因 物理化学 催化作用 冶金 细胞生物学 免疫学
热门帖子
关注 科研通微信公众号,转发送积分 3957040
求助须知:如何正确求助?哪些是违规求助? 3503067
关于积分的说明 11111230
捐赠科研通 3234096
什么是DOI,文献DOI怎么找? 1787725
邀请新用户注册赠送积分活动 870762
科研通“疑难数据库(出版商)”最低求助积分说明 802264