Botnet Detection using Network Traffic Visualization and Histogram of Oriented Gradients

被引:0
作者
Thomas, Rajesh [1 ]
Yerima, Suleiman Y. [1 ]
Shaalan, Khaled [1 ]
机构
[1] British Univ Dubai, Dubai, U Arab Emirates
来源
2024 IEEE 16TH INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND COMMUNICATION NETWORKS, CICN | 2024年
关键词
botnet; machine learning; early detection; network flow; Histogram of Oriented Gradients;
D O I
10.1109/CICN.2024.133
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Botnets are increasingly being used by hackers to conduct attacks on critical network infrastructure. As botnets evolve with advanced resilient mechanisms and propagation techniques, it is imperative to improve detection techniques for early warning. Despite being better than signatures at detecting zero-day attacks, machine learning techniques come with considerable overheads associated with pre-processing and feature extraction in traditional network-based approaches. Moreover, designing effective hand-crafted features for botnet detection requires advanced domain expertise. To overcome these drawbacks and enable early detection of botnets, we propose a lightweight approach for botnet detection using Histogram of Oriented Gradients (HOG) feature descriptor in this paper. We designed an adaptable framework for network traffic visualization and used this to extract images for HOG-based botnet traffic detection. Several machine learning algorithms were used to evaluate our HOG-based model and our study showed that eXtreme Gradient Boosting outperformed the other eight classifiers by obtaining 99.4% accuracy in the experiments.
引用
收藏
页码:805 / 812
页数:8
相关论文
共 23 条
[11]   N-BaIoT-Network-Based Detection of IoT Botnet Attacks Using Deep Autoencoders [J].
Meidan, Yair ;
Bohadana, Michael ;
Mathov, Yael ;
Mirsky, Yisroel ;
Shabtai, Asaf ;
Breitenbacher, Dominik ;
Elovici, Yuval .
IEEE PERVASIVE COMPUTING, 2018, 17 (03) :12-22
[12]   Image-based Malware Classification: A Space Filling Curve Approach [J].
O'Shaughnessy, Stephen .
2019 IEEE SYMPOSIUM ON VISUALIZATION FOR CYBER SECURITY (VIZSEC), 2019,
[13]  
openargus-Home-openargus.org, ABOUT US
[14]   MLMD-A Malware-Detecting Antivirus Tool Based on the XGBoost Machine Learning Algorithm [J].
Palsa, Jakub ;
Adam, Norbert ;
Hurtuk, Jan ;
Chovancova, Eva ;
Mados, Branislav ;
Chovanec, Martin ;
Kocan, Stanislav .
APPLIED SCIENCES-BASEL, 2022, 12 (13)
[15]   Deep learning to detect botnet via network flow summaries [J].
Pektas, Abdurrahman ;
Acarman, Tankut .
NEURAL COMPUTING & APPLICATIONS, 2019, 31 (11) :8021-8033
[16]  
SiLK-tools.netsa.cert.org, ABOUT US
[17]  
Sperandei S, 2014, BIOCHEM MEDICA, V24, P12, DOI 10.11613/BM.2014.003
[18]  
Sriram S, 2020, IEEE CONF COMPUT, P189, DOI 10.1109/INFOCOMWKSHPS50562.2020.9162668
[19]  
Stevanovic M, 2014, INT CONF COMPUT NETW, P797, DOI 10.1109/ICCNC.2014.6785439
[20]  
Thaseen S., 2013, Proceedings of the 2013 International Conference on Pattern Recognition, Informatics and Mobile Engineering (PRIME), P294, DOI 10.1109/ICPRIME.2013.6496489