arrow
返回

MLSEC - Benchmarking Shallow and Deep Machine Learning Models for Network Security

delete2019-05-01
delete2
PRE
AI
P
Pedro Casas *
G
Gonzalo Marín
G
Germán Capdehourat
M
Maciej Korczyński
DOI:10.1109/SPW.2019.00050delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Network security represents a keystone to ISPs, who need to cope with an increasing number of network attacks that put the network's integrity at risk. The high-dimensionality of network data provided by current network monitoring systems opens the door to the massive application of Machine Learning (ML) approaches to improve the detection and classification of network attacks. In recent years, machine learning-based systems have gained popularity for network security applications, usually considering the application of shallow models, where a set of expert handcrafted features are needed to pre-process the data before training. Deep Learning (DL) models can alleviate the need of domain expert knowledge by relying on their ability to learn feature representations from input raw or basic, non-processed data. Still, it is not clear today which is the best model or best model-category to manage network security, as in general, only adhoc and tailored approaches have been proposed and evaluated so far. In this paper we train and benchmark different ML models for detection of network attacks in different real network data. We consider an extensive battery of supervised ML models, including both shallow and deep models, taking as input either pre-computed domain-knowledge based input features, or raw, byte-stream inputs. Proposed models are evaluated either using real, in the wild network measurements coming from the WIDE backbone network - the well-known MAWILab dataset, and through publicly available datasets. Results suggest that deep learning models can provide similar results to the best-performing shallow models, but without any sort of expert handcrafted inputs.
Keyword:
Machine Learning
Deep Learning
Network Traffic
Network Attacks
Malware Detection
AI总结

AI总结

对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。

期刊

I
IEEE Security and Privacy Workshops, SPW
IF:
0
论文数:
1
被引数:
0

机构

U
universidad de la republica, uruguay
学者数:
7.8K
论文数: 5.4K
被引数: 10
C
communaute universite grenoble alpes
学者数:
3.5W
论文数: 2.7W
被引数: 29
引用论文

引用论文

An empirical comparison of botnet detection methods
err2014-09-01
err516
errOAAI
errGarcia, S.; Grill, M.; Stiborek, J.; Zunino, A.
err分享
err收藏
Overlimiting Current in a Microchannel
err2011-09-06
err0
errOAAI
errE. Victoria Dydek; Boris Zaltzman; Isaak Rubinstein; D. S. Deng; Ali Mani; Martin Z. Bazant
err分享
err收藏
In Pursuit of the "Divine" Functional
err2002-10-25
err0
PREAI
errAnn E. Mattsson
err分享
err收藏
Electronic structure of LiMnO : X-ray emission and photoelectron spectra and band structure calculations
err2000-03-01
err0
PREAI
errV.R. Galakhov; M.A. Korotin; N.A. Ovechkina; E.Z. Kurmaev; V.S. Gorshkov; D.G. Kellerman; S. Bartkowski; M. Neumann
err分享
err收藏
Relevance of the Heisenberg-Kitaev Model for the Honeycomb Lattice IridatesA2IrO3
err2012-03-20
err0
errOAAI
errYogesh Singh; S. Manni; J. Reuther; T. Berlijn; R. Thomale; W. Ku; S. Trebst; P. Gegenwart
err分享
err收藏
err分享
err收藏
Assessing Density Functionals Using Many Body Theory for Hybrid Perovskites
err2017-10-06
err0
errOAAI
errMenno Bokdam; Jonathan Lahnsteiner; Benjamin Ramberger; Tobias Schäfer; Georg Kresse
err分享
err收藏
学者 查看更多内容