Anomaly Detection in Encrypted Internet Traffic Using Hybrid Deep Learning

نویسندگان

چکیده

An increasing number of Internet application services are relying on encrypted traffic to offer adequate consumer privacy. Anomaly detection in circumvent and mitigate cyber security threats is, however, an open ongoing research challenge due the limitation existing classification techniques. Deep learning is emerging as a promising paradigm, allowing reduction manual determination feature set increase accuracy. The present work develops deep learning-based model for anomalies network traffic. Three different publicly available datasets including NSL-KDD, UNSW-NB15, CIC-IDS-2017 used comprehensively analyze attacks targeting popular protocols. Instead single model, multiple schemes using convolutional (CNN), long short-term memory (LSTM), recurrent neural networks (RNNs) investigated. Our results report hybrid combination (CNN) gated unit (GRU) models outperforming others. approach benefits from low-latency derivation CNN, overall improved training dataset fitting. Additionally, highly effective generalization offered by GRU optimal time-domain-related extraction, resulting CNN scheme presenting best model.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Concept drift detection in business process logs using deep learning

Process mining provides a bridge between process modeling and analysis on the one hand and data mining on the other hand. Process mining aims at discovering, monitoring, and improving real processes by extracting knowledge from event logs. However, as most business processes change over time (e.g. the effects of new legislation, seasonal effects and etc.), traditional process mining techniques ...

متن کامل

Deep Packet: A Novel Approach For Encrypted Traffic Classification Using Deep Learning

Network traffic classification has become significantly important with rapid growth of current Internet network and online applications. There have been numerous studies on this topic which have led to many different approaches. Most of these approaches use predefined features extracted by an expert in order to classify network traffic. In contrast, in this study, we propose a deep learning bas...

متن کامل

Realtime Encrypted Traffic Identification using Machine Learning

Accurate network traffic identification plays important roles in many areas such as traffic engineering, QoS and intrusion detection etc. The emergence of many new encrypted applications which use dynamic port numbers and masquerading techniques causes the most challenging problem in network traffic identification field. One of the challenging issues for existing traffic identification methods ...

متن کامل

Looking deeper: Using deep learning to identify internet communications traffic

Recent years have shown an unprecedented reliance on the internet to provide services essential for business, education, and personal use. Due to this reliance, coupled with the exponential growth of the internet traffic being generated, there has never been a greater necessity for effective network management techniques. Network traffic classification is one key component of this network manag...

متن کامل

A Survey of Anomaly Detection Approaches in Internet of Things

Internet of Things is an ever-growing network of heterogeneous and constraint nodes which are connected to each other and the Internet. Security plays an important role in such networks. Experience has proved that encryption and authentication are not enough for the security of networks and an Intrusion Detection System is required to detect and to prevent attacks from malicious nodes. In this ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

ژورنال

عنوان ژورنال: Security and Communication Networks

سال: 2021

ISSN: ['1939-0122', '1939-0114']

DOI: https://doi.org/10.1155/2021/5363750