Automatic Botnet Attack Identification Based on Machine Learning

被引:3
|
作者
Li P.H. [1 ]
Xu J. [1 ]
Xu Z.Y. [1 ]
Chen S. [1 ]
Niu B.W. [2 ]
Yin J. [1 ]
Sun X.F. [1 ]
Lan H.L. [1 ]
Chen L.L. [3 ]
机构
[1] Jiangsu Police Institute, Nanjing
[2] Public Security Department of Jiangsu Province, Nanjing
[3] The University of Adelaide, Adelaide, 5005, SA
来源
Computers, Materials and Continua | 2022年 / 73卷 / 02期
关键词
Honeypot; log; machine learning; network attack;
D O I
10.32604/cmc.2022.029969
中图分类号
学科分类号
摘要
At present, the severe network security situation has put forward high requirements for network security defense technology. In order to automate botnet threat warning, this paper researches the types and characteristics of Botnet. Botnet has special characteristics in attributes such as packets, attack time interval, and packet size. In this paper, the attack data is annotated by means of string recognition and expert screening. The attack features are extracted from the labeled attack data, and then use K-means for cluster analysis. The clustering results show that the same attack data has its unique characteristics, and the automatic identification of network attacks is realized based on these characteristics. At the same time, based on the collection and attribute extraction of Botnet attack data, this paper uses RF, GBM, XGBOOST and other machine learning models to test the warning results, and automatically analyzes the attack by importing attack data. In the early warning analysis results, the accuracy rates of different models are obtained. Through the descriptive values of the three accuracy rates of Accuracy, Precision, and F1_Score, the early warning effect of each model can be comprehensively displayed. Among the five algorithms used in this paper, three have an accuracy rate of over 90%. The three models with the highest accuracy are used in the early warning model. The research shows that cyberattacks can be accurately predicted. When this technology is applied to the protection system, accurate early warning can be given before a network attack is launched. © 2022 Tech Science Press. All rights reserved.
引用
收藏
页码:3847 / 3860
页数:13
相关论文
共 50 条
  • [21] A Machine Learning Based Automatic Hardware Trojan Attack Space Exploration and Benchmarking Framework
    Cruz, Jonathan
    Gaikwad, Pravin
    Nair, Abhishek
    Chakraborty, Prabuddha
    Bhunia, Swarup
    2022 ASIAN HARDWARE ORIENTED SECURITY AND TRUST SYMPOSIUM (ASIANHOST), 2022,
  • [22] Automatic Identification of Individual Nanoplastics by Raman Spectroscopy Based on Machine Learning
    Xie, Lifang
    Luo, Siheng
    Liu, Yangyang
    Ruan, Xuejun
    Gong, Kedong
    Ge, Qiuyue
    Li, Kejian
    Valev, Ventsislav Kolev
    Liu, Guokun
    Zhang, Liwu
    ENVIRONMENTAL SCIENCE & TECHNOLOGY, 2023, 57 (46) : 18203 - 18214
  • [23] Botnet attack detection in Internet of Things devices over cloud environment via machine learning
    Waqas, Muhammad
    Kumar, Kamlesh
    Laghari, Asif Ali
    Saeed, Umair
    Rind, Muhammad Malook
    Shaikh, Aftab Ahmed
    Hussain, Fahad
    Rai, Athaul
    Qazi, Abdul Qayoom
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2022, 34 (04):
  • [24] DDoS Attack Identification and Defense using SDN based on Machine Learning Method
    Yang Lingfeng
    Zhao Hui
    2018 15TH INTERNATIONAL SYMPOSIUM ON PERVASIVE SYSTEMS, ALGORITHMS AND NETWORKS (I-SPAN 2018), 2018, : 166 - 170
  • [25] The Role of Machine Learning in Botnet Detection
    Miller, Sean
    Busby-Earle, Curtis
    2016 11TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2016, : 359 - 364
  • [26] Network Flow based IoT Botnet Attack Detection using Deep Learning
    Sriram, S.
    Vinayakumar, R.
    Alazab, Mamoun
    Soman, K. P.
    IEEE INFOCOM 2020 - IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (INFOCOM WKSHPS), 2020, : 189 - 194
  • [27] Botnet Detection using Machine Learning
    Haq, Shamsul
    Singh, Yashwant
    2018 FIFTH INTERNATIONAL CONFERENCE ON PARALLEL, DISTRIBUTED AND GRID COMPUTING (IEEE PDGC), 2018, : 240 - 245
  • [28] DDOS Attack Identification using Machine Learning Techniques
    Peneti, Subhashini
    Hemalatha, E.
    2021 INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATION AND INFORMATICS (ICCCI), 2021,
  • [29] Lightweight Meta-Learning BotNet Attack Detection
    Fadhilla, Cut Alna
    Alfikri, Muhammad Dany
    Kaliski, Rafael
    IEEE INTERNET OF THINGS JOURNAL, 2023, 10 (10) : 8455 - 8466
  • [30] A GPU-based machine learning approach for detection of botnet attacks
    Motylinski, Michal
    MacDermott, Aine
    Iqbal, Farkhund
    Shah, Babar
    COMPUTERS & SECURITY, 2022, 123