Published December 19, 2022 | Version v1
Journal article Open

A few approaches in Encrypted Malware Classifications

  • 1. School of Computer Science, Nanjing University of Posts and Telecommunications, Nanjing, China

Description

The classification of malware traffic is a critical component of network intrusion detection systems. Because of the recent surge in traffic encryption, it is no longer possible to categorize malware traffic using port-based or signature-based methods. Nowadays, academics and industry developers are turning to learning-based systems for encrypted malware traffic categorization, and mining statistical patterns of traffic behaviors.

Machine learning has been increasingly researched for the detection of malicious network traffic during the last few decades; it is particularly tempting when the traffic is encrypted, as traditional pattern-matching algorithms are ineffective. Several approaches for traffic classification problems have recently been researched with excellent accuracy thanks to the advent of deep learning algorithms. In this research, I will investigate the efficacy of Random Forest, Logistic Regression, and Convolutional Neural Networks for classification tasks.

Files

5 (11) 226-236.pdf

Files (515.6 kB)

Name Size Download all
md5:0c30acba6dd47836ed9a4cbe64296c7c
515.6 kB Preview Download