arrow
Return

Network Traffic Fingerprinting Based on Approximated Kernel Two-Sample Test

delete2018-03-01
delete10
PRE
AI
J
Jan Kohout *
T
Tomáš Pevný
DOI:10.1109/TIFS.2017.2768018delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Many applications and communication protocols exhibit unique communication patterns that can be exploited to identify them in network traffic. This paper proposes a method to represent these patterns compactly, such that they can be used in different analytical tasks. The method treats each communication as a set of observations of a random variable with unknown probability distribution. This view allows us to derive the representation from a distance between two probability distributions used in maximum mean discrepancy-a non-parametric kernel test. The representation (and distance) can be then easily used in various algorithms for identification of communicating application and data analysis, independently of the specific type of input data.
Keywords:
Communication fingerprinting
maximum mean discrepancy
application identification
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

IEEE Transactions on Information Forensics and Security cover
IEEE Transactions on Information Forensics and Security
IF:
8
Papers:
5.2K
Citations:
2.3W

Organization

C
czech technical university prague
Scholars:
6.5K
Papers: 5.3K
Citations: 3