A botnet is one of the most grievous threats to network security since it can evolve into many attacks, such as Denial-of-Service (DoS), spam, and phishing. However, current detection methods are inefficient to identify unknown botnet. The high-speed network environment makes botnet detection more difficult. To solve these problems, we improve the progress of packet processing technologies such as New Application Programming Interface (NAPI) and zero copy and propose an efficient quasi-real-time intrusion detection system. Our work detects botnet using supervised machine learning approach under the high-speed network environment. Our contributions are summarized as follows: (1) Build a detection framework using PF_RING for sniffing and processing network traces to extract flow features dynamically. (2) Use random forest model to extract promising conversation features. (3) Analyze the performance of different classification algorithms. The proposed method is demonstrated by well-known CTU13 dataset and nonmalicious applications. The experimental results show our conversation-based detection approach can identify botnet with higher accuracy and lower false positive rate than flow-based approach.
from #AlexandrosSfakianakis via Alexandros G.Sfakianakis on Inoreader http://ift.tt/2od5j0Z
via IFTTT
Εγγραφή σε:
Σχόλια ανάρτησης (Atom)
Δημοφιλείς αναρτήσεις
-
Essay Thesaurus Generator eisenschiml thesis Short essay on great wall of china how to start a compare and contrast essay sample assessing c...
-
How to write a Scholarship Essay - Examples. Scholarship Essays should use this formatting unless specified otherwise: Two to three pages in...
-
The Notch signaling pathway is a very conserved system that controls embryonic cell fate decisions and the maintenance of adult stem cells t...
-
Through the Wormhole: Is There an Edge to... Science - 43 min - ★ It is commonly theorized that the universe began with the Big Bang... Thro...
-
Web version of a book about Subversion. Work in progress, however already very complete. The book should be published by O'Reilly and As...
-
http://ift.tt/2p7HgAl
-
Reported by Scientific American, this Week in World War I: March 24, 1917 -- Read more on ScientificAmerican.com from #Alexandro...
-
from #AlexandrosSfakianakis via Alexandros G.Sfakianakis on Inoreader http://ift.tt/2octpu9 via IFTTT
-
Publication date: March 2017 Source: Clinical Biochemistry, Volume 50, Issues 4–5 Author(s): Rosalina Martínez-López, Paloma Ropero, Crist...
Δεν υπάρχουν σχόλια:
Δημοσίευση σχολίου