English
Related papers

Related papers: Feature Mining for Encrypted Malicious Traffic Det…

200 papers

The usage of the mobile app is unassailable in this digital era. While tons of data are generated daily, user privacy security concerns become an important issue. Nowadays, tons of techniques, such as machine learning and deep learning…

Cryptography and Security · Computer Science 2023-02-08 Lichun Gao , Mingjie Zeng , Zhanhong Huang

Machine learning (ML) is promising in accurately detecting malicious flows in encrypted network traffic; however, it is challenging to collect a training dataset that contains a sufficient amount of encrypted malicious data with correct…

Cryptography and Security · Computer Science 2023-09-12 Yuqi Qing , Qilei Yin , Xinhao Deng , Yihao Chen , Zhuotao Liu , Kun Sun , Ke Xu , Jia Zhang , Qi Li

Traffic classification associates packet streams with known application labels, which is vital for network security and network management. With the rise of NAT, port dynamics, and encrypted traffic, it is increasingly challenging to obtain…

Machine Learning · Computer Science 2021-10-20 Bo Pang , Yongquan Fu , Siyuan Ren , Ye Wang , Qing Liao , Yan Jia

The popularity of 5G networks poses a huge challenge for malicious traffic detection technology. The reason for this is that as the use of 5G technology increases, so does the risk of malicious traffic activity on 5G networks. Malicious…

Cryptography and Security · Computer Science 2024-02-23 Zihao Wang , Kar Wai Fok , Vrizlynn L. L. Thing

Internet traffic classification plays a key role in network visibility, Quality of Services (QoS), intrusion detection, Quality of Experience (QoE) and traffic-trend analyses. In order to improve privacy, integrity, confidentiality, and…

Machine Learning · Computer Science 2022-06-22 Ofek Bader , Adi Lichy , Amit Dvir , Ran Dubin , Chen Hajaj

The increasing demand for privacy protection and security considerations leads to a significant rise in the proportion of encrypted network traffic. Since traffic content becomes unrecognizable after encryption, accurate analysis is…

Cryptography and Security · Computer Science 2025-05-27 Di Zhao , Bo Jiang , Song Liu , Susu Cui , Meng Shen , Dongqi Han , Xingmao Guan , Zhigang Lu

Attackers are perpetually modifying their tactics to avoid detection and frequently leverage legitimate credentials with trusted tools already deployed in a network environment, making it difficult for organizations to proactively identify…

Cryptography and Security · Computer Science 2021-02-18 Konstantinos Demertzis , Konstantinos Tsiknas , Dimitrios Takezis , Charalabos Skianis , Lazaros Iliadis

Machine learning (ML) based malicious traffic detection is an emerging security paradigm, particularly for zero-day attack detection, which is complementary to existing rule based detection. However, the existing ML based detection has low…

Cryptography and Security · Computer Science 2021-09-17 Chuanpu Fu , Qi Li , Meng Shen , Ke Xu

The design and evaluation of data-driven network intrusion detection methods are currently held back by a lack of adequate data, both in terms of benign and attack traffic. Existing datasets are mostly gathered in isolated lab environments…

Cryptography and Security · Computer Science 2020-11-13 Henry Clausen , Robert Flood , David Aspinall

Network traffic classification, a task to classify network traffic and identify its type, is the most fundamental step to improve network services and manage modern networks. Classical machine learning and deep learning method have…

Networking and Internet Architecture · Computer Science 2021-07-09 Yao Peng , Meirong He , Yu Wang

Machine learning (ML) started to become widely deployed in cyber security settings for shortening the detection cycle of cyber attacks. To date, most ML-based systems are either proprietary or make specific choices of feature…

Cryptography and Security · Computer Science 2019-07-11 Talha Ongun , Timothy Sakharaov , Simona Boboila , Alina Oprea , Tina Eliassi-Rad

This paper reveals a data bias issue that can severely affect the performance while conducting a machine learning model for malicious URL detection. We describe how such bias can be identified using interpretable machine learning…

Machine Learning · Computer Science 2024-02-12 YunDa Tsai , Cayon Liow , Yin Sheng Siang , Shou-De Lin

To maintain the privacy of users' web browsing history, popular browsers encrypt their DNS traffic using the DNS-over-HTTPS (DoH) protocol. Unfortunately, encrypting DNS packets prevents many existing intrusion detection systems from using…

Cryptography and Security · Computer Science 2023-10-18 Sergio Salinas Monroy , Aman Kumar Gupta , Garrett Wahlstedt

Detecting covert channels among legitimate traffic represents a severe challenge due to the high heterogeneity of networks. Therefore, we propose an effective covert channel detection method, based on the analysis of DNS network data…

Cryptography and Security · Computer Science 2020-10-06 Salvatore Saeli , Federica Bisio , Pierangelo Lombardo , Danilo Massa

Encrypted traffic classification faces growing challenges as encryption renders traditional deep packet inspection ineffective. This study addresses binary VPN detection, distinguishing VPN-encrypted from non-VPN traffic using wavelet…

Networking and Internet Architecture · Computer Science 2025-08-14 Yasameen Sajid Razooqi , Adrian Pekar

The attention that deep learning has garnered from the academic community and industry continues to grow year over year, and it has been said that we are in a new golden age of artificial intelligence research. However, neural networks are…

Machine Learning · Computer Science 2020-09-17 Erick Galinkin

Internet traffic classification is widely used to facilitate network management. It plays a crucial role in Quality of Services (QoS), Quality of Experience (QoE), network visibility, intrusion detection, and traffic trend analyses. While…

Cryptography and Security · Computer Science 2022-06-17 Adi Lichy , Ofek Bader , Ran Dubin , Amit Dvir , Chen Hajaj

No significant research has been conducted so far on Intrusion detection due to data availability since, network traffic within companies is private information and no available logs can be found on the Internet for independent research.…

Cryptography and Security · Computer Science 2021-07-28 Theodosis Mourouzis , Andreas Avgousti

The growing cybersecurity threats make it essential to use high-quality data to train Machine Learning (ML) models for network traffic analysis, without noisy or missing data. By selecting the most relevant features for cyber-attack…

Cryptography and Security · Computer Science 2024-07-09 João Vitorino , Miguel Silva , Eva Maia , Isabel Praça

State of the art deep learning techniques are known to be vulnerable to evasion attacks where an adversarial sample is generated from a malign sample and misclassified as benign. Detection of encrypted malware command and control traffic…

Cryptography and Security · Computer Science 2020-11-10 Carlos Novo , Ricardo Morla