Network Security Threat Intelligence Prediction in Network Traffic Analysis Based on Machine Learning

被引:0
作者
Guan Y. [1 ]
机构
[1] Tangshan Polytechnic College, Hebei Tangshan, Tangshan
关键词
Anomalous traffic; CNN-LSTM; Deep domain adaptation; Machine learning; PCA;
D O I
10.2478/amns-2024-1447
中图分类号
学科分类号
摘要
With the increasingly complex network architecture under the development of information technology, it is more and more difficult to recognize various network traffic. Based on the direction of machine learning for network traffic anomaly detection, this paper proposes a three-stage CNN-LSTM attention mechanism model for feature extraction of original traffic and a PCA-based improvement for spatial feature learning of CNN to construct its anomaly traffic detection model. Meanwhile, based on the abnormal traffic detection, with discriminative network and generative network as the main parts, we propose the cyber security threat intelligence prediction model based on the use of a domain adaptive model to realize the shared representation of source and target domains. In the experiment of the abnormal traffic detection model, the accuracy rate of this paper's detection model is 93.56%, the check-all rate is 99.2%, the F1 value is 84.9%, and the Kappa value is 80.66%. The detection level in the face of DOS attacks is the highest, with 98.28% and 99.63% checking full rate and checking accuracy, respectively. In the experiments of the network security threat intelligence prediction model, the prediction model of this paper reduces the time consumed by about 72% on average compared to rule file matching in dealing with large-scale network traffic. In high-risk cybersecurity threat attack types, it has an average prediction accuracy of 88.83% and a recall rate of over 90%. © 2024 Yankui Guan, published by Sciendo.
引用
收藏
相关论文
共 50 条
  • [31] Traffic Classification with Machine Learning in a Live Network
    Bakker, Jarrod
    Ng, Bryan
    Seah, Winston K. G.
    Pekar, Adrian
    2019 IFIP/IEEE SYMPOSIUM ON INTEGRATED NETWORK AND SERVICE MANAGEMENT (IM), 2019, : 488 - 493
  • [32] PERFORMANCE ANALYSIS OF UNSUPERVISED MACHINE LEARNING TECHNIQUES FOR NETWORK TRAFFIC CLASSIFICATION
    Singh, Hardeep
    2015 5TH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING & COMMUNICATION TECHNOLOGIES ACCT 2015, 2015, : 401 - 404
  • [33] Network Encryption Traffic Anomaly Detection Based on Integrated Machine Learning
    Yang, Xiaoqing
    Angkawisittpan, Niwat
    TEHNICKI VJESNIK-TECHNICAL GAZETTE, 2025, 32 (02): : 713 - 722
  • [34] Machine learning and network analysis for diagnosis and prediction in disorders of consciousness
    Narayanan, Ajit
    Magee, Wendy L.
    Siegert, Richard J.
    BMC MEDICAL INFORMATICS AND DECISION MAKING, 2023, 23 (01)
  • [35] Machine learning and network analysis for diagnosis and prediction in disorders of consciousness
    Ajit Narayanan
    Wendy L. Magee
    Richard J. Siegert
    BMC Medical Informatics and Decision Making, 23
  • [36] FPGA-Based Network Traffic Classification Using Machine Learning
    Elnawawy, Mohammed
    Sagahyroon, Assim
    Shanableh, Tamer
    IEEE ACCESS, 2020, 8 : 175637 - 175650
  • [37] A new platform for machine-learning-based network traffic classification
    Bozkir, Ramazan
    Cicioglu, Murtaza
    Calhan, Ali
    Togay, Cengiz
    COMPUTER COMMUNICATIONS, 2023, 208 : 1 - 14
  • [38] Network traffic analysis using machine learning: an unsupervised approach to understand and slice your network
    Ons Aouedi
    Kandaraj Piamrat
    Salima Hamma
    J. K. Menuka Perera
    Annals of Telecommunications, 2022, 77 : 297 - 309
  • [39] Detecting APT Attacks Based on Network Traffic Using Machine Learning
    Xuan, Cho Do
    JOURNAL OF WEB ENGINEERING, 2021, 20 (01): : 171 - 190
  • [40] vTC: Machine Learning Based Traffic Classification as a Virtual Network Function
    He, Lu
    Xu, Chen
    Luo, Yan
    SDN-NFV SECURITY'16: PROCEEDINGS OF THE 2016 ACM INTERNATIONAL WORKSHOP ON SECURITY IN SOFTWARE DEFINED NETWORKS & NETWORK FUNCTION VIRTUALIZATION, 2016, : 53 - 56