已入深夜,您辛苦了!由于当前在线用户较少,发布求助请尽量完整的填写文献信息,科研通机器人24小时在线,伴您度过漫漫科研夜!祝你早点完成任务,早点休息,好梦!

Feature analysis of encrypted malicious traffic

入侵检测系统 支持向量机 数据挖掘 人工智能 特征(语言学) 网络安全
作者
Anish Singh Shekhawat,Fabio Di Troia,Mark Stamp
出处
期刊:Expert Systems With Applications [Elsevier]
卷期号:125: 130-141 被引量:14
标识
DOI:10.1016/j.eswa.2019.01.064
摘要

Abstract In recent years there has been a dramatic increase in the number of malware attacks that use encrypted HTTP traffic for self-propagation or communication. Antivirus software and firewalls typically will not have access to encryption keys, and therefore direct detection of malicious encrypted data is unlikely to succeed. However, previous work has shown that traffic analysis can provide indications of malicious intent, even in cases where the underlying data remains encrypted. In this paper, we apply three machine learning techniques to the problem of distinguishing malicious encrypted HTTP traffic from benign encrypted traffic and obtain results comparable to previous work. We then consider the problem of feature analysis in some detail. Previous work has often relied on human expertise to determine the most useful and informative features in this problem domain. We demonstrate that such feature-related information can be obtained directly from machine learning models themselves. We argue that such a machine learning based approach to feature analysis is preferable, as it is more reliable, and we can, for example, uncover relatively unintuitive interactions between features.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
俏皮怀梦发布了新的文献求助10
刚刚
Dan发布了新的文献求助50
1秒前
sanshi完成签到,获得积分10
1秒前
小贾完成签到 ,获得积分10
2秒前
2秒前
3秒前
pcr163应助我是苯宝宝采纳,获得50
3秒前
4秒前
科研通AI5应助倾千奚山采纳,获得10
4秒前
4秒前
wtt完成签到 ,获得积分10
5秒前
maxSpr完成签到 ,获得积分10
6秒前
7秒前
闪闪的谷梦完成签到 ,获得积分10
7秒前
科研通AI2S应助LiT-07采纳,获得10
7秒前
俏皮怀梦完成签到,获得积分20
9秒前
研友_8Raw2Z发布了新的文献求助10
9秒前
9秒前
莘莘发布了新的文献求助10
12秒前
planto发布了新的文献求助10
13秒前
小马甲应助醉熏的以云采纳,获得10
13秒前
YJM应助研友_8Raw2Z采纳,获得10
15秒前
15秒前
Orange应助研友_8Raw2Z采纳,获得10
15秒前
知性的梦松完成签到,获得积分10
16秒前
21秒前
科研通AI5应助十七。采纳,获得10
25秒前
充电宝应助十七。采纳,获得10
25秒前
李健的小迷弟应助冷山scol采纳,获得10
26秒前
27秒前
ipeakkka发布了新的文献求助10
28秒前
英姑应助迷路的依波采纳,获得10
29秒前
31秒前
32秒前
32秒前
34秒前
梦里繁花完成签到,获得积分10
36秒前
郑qqqq发布了新的文献求助10
36秒前
清秀的吐司完成签到,获得积分10
37秒前
37秒前
高分求助中
Continuum Thermodynamics and Material Modelling 3000
Production Logging: Theoretical and Interpretive Elements 2700
Mechanistic Modeling of Gas-Liquid Two-Phase Flow in Pipes 2500
Kelsen’s Legacy: Legal Normativity, International Law and Democracy 1000
Conference Record, IAS Annual Meeting 1977 610
Interest Rate Modeling. Volume 3: Products and Risk Management 600
Interest Rate Modeling. Volume 2: Term Structure Models 600
热门求助领域 (近24小时)
化学 材料科学 生物 医学 工程类 有机化学 生物化学 物理 纳米技术 计算机科学 内科学 化学工程 复合材料 基因 遗传学 物理化学 催化作用 量子力学 光电子学 冶金
热门帖子
关注 科研通微信公众号,转发送积分 3544327
求助须知:如何正确求助?哪些是违规求助? 3121493
关于积分的说明 9347609
捐赠科研通 2819788
什么是DOI,文献DOI怎么找? 1550401
邀请新用户注册赠送积分活动 722526
科研通“疑难数据库(出版商)”最低求助积分说明 713265