Automatic Botnet Attack Identification Based on Machine Learning

被引:3
|
作者
Li P.H. [1 ]
Xu J. [1 ]
Xu Z.Y. [1 ]
Chen S. [1 ]
Niu B.W. [2 ]
Yin J. [1 ]
Sun X.F. [1 ]
Lan H.L. [1 ]
Chen L.L. [3 ]
机构
[1] Jiangsu Police Institute, Nanjing
[2] Public Security Department of Jiangsu Province, Nanjing
[3] The University of Adelaide, Adelaide, 5005, SA
来源
Computers, Materials and Continua | 2022年 / 73卷 / 02期
关键词
Honeypot; log; machine learning; network attack;
D O I
10.32604/cmc.2022.029969
中图分类号
学科分类号
摘要
At present, the severe network security situation has put forward high requirements for network security defense technology. In order to automate botnet threat warning, this paper researches the types and characteristics of Botnet. Botnet has special characteristics in attributes such as packets, attack time interval, and packet size. In this paper, the attack data is annotated by means of string recognition and expert screening. The attack features are extracted from the labeled attack data, and then use K-means for cluster analysis. The clustering results show that the same attack data has its unique characteristics, and the automatic identification of network attacks is realized based on these characteristics. At the same time, based on the collection and attribute extraction of Botnet attack data, this paper uses RF, GBM, XGBOOST and other machine learning models to test the warning results, and automatically analyzes the attack by importing attack data. In the early warning analysis results, the accuracy rates of different models are obtained. Through the descriptive values of the three accuracy rates of Accuracy, Precision, and F1_Score, the early warning effect of each model can be comprehensively displayed. Among the five algorithms used in this paper, three have an accuracy rate of over 90%. The three models with the highest accuracy are used in the early warning model. The research shows that cyberattacks can be accurately predicted. When this technology is applied to the protection system, accurate early warning can be given before a network attack is launched. © 2022 Tech Science Press. All rights reserved.
引用
收藏
页码:3847 / 3860
页数:13
相关论文
共 50 条
  • [41] Study on Machine Learning Techniques for Botnet Detection
    Silva, L.
    Utimura, L.
    Costa, K.
    Silva, M.
    Prado, S.
    IEEE LATIN AMERICA TRANSACTIONS, 2020, 18 (05) : 881 - 888
  • [42] Botnet Detection via Machine Learning Techniques
    Wang, Haofan
    2022 INTERNATIONAL CONFERENCE ON BIG DATA, INFORMATION AND COMPUTER NETWORK (BDICN 2022), 2022, : 836 - 841
  • [43] BotNet-Inspired HTTP-Based DDoS Attack Prevention Using Supervised Machine Learning Algorithms in Internet of Things Devices
    Akinsola, Jide Ebenezer Taiwo
    Ajagbe, Sunday Adeola
    Lawal, Azeezat Oluwayemisi
    Olajubu, Emmanuel Ajayi
    Aderounmu, Ganiyu Adesola
    Adigun, Matthew Olusegun
    18TH ANNUAL IEEE INTERNATIONAL SYSTEMS CONFERENCE, SYSCON 2024, 2024,
  • [44] Machine Learning Based DDoS Attack Detection
    Ajeetha, G.
    Priya, Madhu G.
    2019 INNOVATIONS IN POWER AND ADVANCED COMPUTING TECHNOLOGIES (I-PACT), 2019,
  • [45] Explaining Machine Learning Predictions in Botnet Detection
    Miller, Sean
    Busby-Earle, Curtis
    ARTIFICIAL INTELLIGENCE AND SOFT COMPUTING, ICAISC 2022, PT I, 2023, 13588 : 298 - 309
  • [46] Botnet Forensic Analysis Using Machine Learning
    Bijalwan, Anchit
    SECURITY AND COMMUNICATION NETWORKS, 2020, 2020 (2020)
  • [47] Machine learning for automatic identification of thoracoabdominal asynchrony in children
    Ratnagiri, Madhavi V.
    Ryan, Lauren
    Strang, Abigail
    Heinle, Robert
    Rahman, Tariq
    Shaffer, Thomas H.
    PEDIATRIC RESEARCH, 2021, 89 (05) : 1232 - 1238
  • [48] Machine learning for automatic identification of thoracoabdominal asynchrony in children
    Madhavi V. Ratnagiri
    Lauren Ryan
    Abigail Strang
    Robert Heinle
    Tariq Rahman
    Thomas H. Shaffer
    Pediatric Research, 2021, 89 : 1232 - 1238
  • [49] Machine learning for automatic identification of new minor species
    Schmidt, Frederic
    Mermy, Guillaume Cruz
    Erwin, Justin
    Robert, Severine
    Neary, Lori
    Thomas, Ian R.
    Daerden, Frank
    Ristic, Bojan
    Patel, Manish R.
    Bellucci, Giancarlo
    Lopez-Moreno, Jose-Juan
    Vandaele, Ann-Carine
    JOURNAL OF QUANTITATIVE SPECTROSCOPY & RADIATIVE TRANSFER, 2021, 259
  • [50] Automatic Language Identification using Machine learning Techniques
    Venkatesan, Hariraj
    Venkatasubramanian, T. Varun
    Sangeetha, J.
    PROCEEDINGS OF THE 3RD INTERNATIONAL CONFERENCE ON COMMUNICATION AND ELECTRONICS SYSTEMS (ICCES 2018), 2018, : 583 - 588