中文
相关论文

相关论文: Introducing Packet-Level Analysis in Programmable …

200 篇论文

Labeled data sets are necessary to train and evaluate anomaly-based network intrusion detection systems. This work provides a focused literature survey of data sets for network-based intrusion detection and describes the underlying packet-…

密码学与安全 · 计算机科学 2019-07-09 Markus Ring , Sarah Wunderlich , Deniz Scheuring , Dieter Landes , Andreas Hotho

Anomaly-based Network Intrusion Detection Systems (NIDS) require correctly labelled, representative and diverse datasets for an accurate evaluation and development. However, several widely used datasets do not include labels which are…

网络与互联网体系结构 · 计算机科学 2025-02-07 Eric Lanfer , Dominik Brockmann , Nils Aschenbruck

This work presents P4TE, an in-band traffic monitoring, load-aware packet forwarding, and flow rate controlling mechanism for traffic engineering in fat-tree topology-based data center networks using PISA switches. It achieves sub-RTT…

网络与互联网体系结构 · 计算机科学 2022-07-20 Debobroto Das Robin , Javed I. Khan

Deep learning (DL) methods have been widely applied to anomaly-based network intrusion detection system (NIDS) to detect malicious traffic. To expand the usage scenarios of DL-based methods, federated learning (FL) allows multiple users to…

密码学与安全 · 计算机科学 2023-08-03 Jiahui Chen , Yi Zhao , Qi Li , Xuewei Feng , Ke Xu

Distributed Denial of Service attacks have become a significant threat to industries and governments leading to substantial financial losses. With the growing reliance on internet services, DDoS attacks can disrupt services by overwhelming…

机器学习 · 计算机科学 2025-01-27 Debashis Kar Suvra

The P4 programming language offers high-level, declarative abstractions that bring the flexibility of software to the domain of networking. Unfortunately, the main abstraction used to represent packet data in P4, namely header types, lacks…

编程语言 · 计算机科学 2019-06-25 Matthias Eichholz , Eric Campbell , Nate Foster , Guido Salvaneschi , Mira Mezini

Learning precise distributions of traffic features (e.g., burst sizes, packet inter-arrival time) is still a largely unsolved problem despite being critical for management tasks such as capacity planning or anomaly detection. A key…

网络与互联网体系结构 · 计算机科学 2024-05-27 Alexander Dietmüller , Albert Gran Alcoz , Laurent Vanbever

We propose a novel approach for distributed statistical detection of change-points in high-volume network traffic. We consider more specifically the task of detecting and identifying the targets of Distributed Denial of Service (DDoS)…

应用统计 · 统计学 2011-09-22 Alexandre Lung-Yut-Fong , Céline Lévy-Leduc , Olivier Cappé

The growing number of Internet users and the prevalence of web applications make it necessary to deal with very complex software and applications in the network. This results in an increasing number of new vulnerabilities in the systems,…

网络与互联网体系结构 · 计算机科学 2021-08-18 Mahdi Soltani , Mahdi Jafari Siavoshani , Amir Hossein Jahangir

NetFlow data is a popular network log format used by many network analysts and researchers. The advantages of using NetFlow over deep packet inspection are that it is easier to collect and process, and it is less privacy intrusive. Many…

机器学习 · 计算机科学 2025-01-09 Clinton Cao , Annibale Panichella , Sicco Verwer , Agathe Blaise , Filippo Rebecchi

Recent advances in deep learning renewed the research interests in machine learning for Network Intrusion Detection Systems (NIDS). Specifically, attention has been given to sequential learning models, due to their ability to extract the…

密码学与安全 · 计算机科学 2022-07-06 Andrea Corsini , Shanchieh Jay Yang , Giovanni Apruzzese

Distributed Denial of Service (DDoS) attacks pose an increasingly substantial cybersecurity threat to organizations across the globe. In this paper, we introduce a new deep learning-based technique for detecting DDoS attacks, a paramount…

密码学与安全 · 计算机科学 2024-09-16 Fernando Martinez , Mariyam Mapkar , Ali Alfatemi , Mohamed Rahouti , Yufeng Xin , Kaiqi Xiong , Nasir Ghani

DoS and DDoS attacks are widely used and pose a constant threat. Here we explore Probability Packet Marking (PPM), one of the important methods for reconstructing the attack-graph and detect the attackers. We present two algorithms.…

密码学与安全 · 计算机科学 2023-04-12 Dina Barak-Pelleg , Daniel Berend , Thomas J. Robinson , Itamar Zimmerman

Traditional intrusion detection systems (IDSs) often rely on either network traffic or process data, but this single-source approach may miss complex attack patterns that span multiple layers within industrial control systems (ICSs) or…

密码学与安全 · 计算机科学 2024-10-28 Vegard Berge , Chunlei Li

Routers employ queues to temporarily hold packets when the scheduler cannot immediately process them. Congestion occurs when the arrival rate of packets exceeds the processing capacity, leading to increased queueing delay. Over time, Active…

网络与互联网体系结构 · 计算机科学 2023-10-30 Leandro C. de Almeida , Rafael Pasquini , Chrysa Papagianni , Fábio L. Verdi

Slow-running attacks against network applications are often not easy to detect, as the attackers behave according to the specification. The servers of many network applications are not prepared for such attacks, either due to missing…

密码学与安全 · 计算机科学 2018-04-19 Thomas Lukaseder , Lisa Maile , Benjamin Erb , Frank Kargl

Understanding the traffic dynamics in networks is a core capability for automated systems to monitor and analyze networking behaviors, reducing expensive human efforts and economic risks through tasks such as traffic classification,…

机器学习 · 计算机科学 2024-12-31 Jiawei Zhou , Woojeong Kim , Zhiying Xu , Alexander M. Rush , Minlan Yu

Software-defined networking (SDN) was devised to simplify network management and automate infrastructure sharing in wired networks. These benefits motivated the application of SDN in wireless sensor networks to leverage solutions for…

密码学与安全 · 计算机科学 2021-03-03 Gustavo A. Nunez Segura , Arsenia Chorti , Cintia Borges Margi

Intrusion detection systems (IDSs) play an important role in identifying malicious attacks and threats in networking systems. As fundamental tools of IDSs, learning based classification methods have been widely employed. When it comes to…

密码学与安全 · 计算机科学 2019-01-29 He Zhang , Xingrui Yu , Peng Ren , Chunbo Luo , Geyong Min

The ability to detect zero-day (novel) attacks has become essential in the network security industry. Due to ever evolving attack signatures, existing network intrusion detection systems often fail to detect these threats. This project aims…

密码学与安全 · 计算机科学 2022-09-01 Cameron Boeder , Troy Januchowski