Flow based bonet traffic detection using AI
نویسندگان
چکیده
This paper outlines the generalized framework for building end-to-end botnet network activity detection systems using artificial intelligence (AI) techniques. The describes flows reconstruction as a primary feature-extraction method and considers different AI classifiers achieving better rate. results of latest research by other authors in field are incorporated to implement more efficient approach discovery. described intrusion pipeline was tested on dataset with real traces. performance metrics classification models were obtained analyzed detail. Different data preprocessing techniques tried which helped improve even further. Some options future enhancement feature selection proposed well. comparison drawn against provided researchers this field.
منابع مشابه
Towards Flow - based Abnormal Network Traffic Detection
One recent trend in network security attacks is an increasing number of indirect attacks which influence network traffic negatively, instead of directly entering a system and damaging it. In future, damages from this type of attack are expected to become more serious. In addition, the bandwidth consumption by these attacks influences the entire network performance. This paper presents an abnorm...
متن کاملTraffic Condition Detection in Freeway by using Autocorrelation of Density and Flow
Traffic conditions vary over time, and therefore, traffic behavior should be modeled as a stochastic process. In this study, a probabilistic approach utilizing Autocorrelation is proposed to model the stochastic variation of traffic conditions, and subsequently, predict the traffic conditions. Using autocorrelation of the time series samples of density and flow which are collected from segments...
متن کاملTraffic Flow Analysis Based on Queuing Models
One of the most important issues in the plant layout design especially in mass production organizations with high inter-plant logistics is‘material flow and inter-plant traffic analysis and its effects on the production capabilities or pauses in production lines. In this paper the inter-plant traffic analysis issue on the basis of single channel queue model (M/M/1) is analyzed in a carmaker c...
متن کاملDGA-Based Botnet Detection Using DNS Traffic
In recent years, an increasing number of botnets use Domain Generation Algorithms (DGAs) to bypass botnet detection systems. DGAs, also referred as “domain fluxing”, has been used since 2004 for botnet controllers, and now become an emerging trend for malware. It can dynamically and frequently generate a large number of random domain names which are used to prevent security systems from detecti...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
ژورنال
عنوان ژورنال: Problemy programmirovaniâ
سال: 2022
ISSN: ['1727-4907']
DOI: https://doi.org/10.15407/pp2022.03-04.376