Sniffing Detection Based on Network Traffic Probing and Machine Learning

被引:10
作者
Gregorczyk, Marcin [1 ]
Zorawski, Piotr [1 ]
Nowakowski, Piotr [1 ]
Cabaj, Krzysztof [2 ]
Mazurczyk, Wojciech [2 ]
机构
[1] Warsaw Univ Technol, Inst Telecommun, PL-00665 Warsaw, Poland
[2] Warsaw Univ Technol, Inst Comp Sci, PL-00665 Warsaw, Poland
基金
欧盟地平线“2020”;
关键词
Security; Machine learning; Protocols; Tools; Internet; Software; AI; artificial intelligence; ML; machine learning; network security; sniffing; threat detection;
D O I
10.1109/ACCESS.2020.3016076
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber attacks are on the rise and each day cyber criminals are developing more and more sophisticated methods to compromise the security of their targets. Sniffing is one of the most important techniques that enables the attacker to collect information on the vulnerabilities of the devices, protocols and applications that can be exploited within the targeted network. It relies mainly on passively analyzing the traffic exchanged within the network, and due to its nature, such an activity is difficult to discover. That is why, in this article, we first revisit existing techniques and tools that can be used to perform sniffing as well as the corresponding mitigation methods. Based on this background, we propose a novel measurement-based detection method that infers whether the sniffing software is active on the suspected machine by network traffic probing and machine learning techniques. The presented experimental results prove that the proposed solution is effective.
引用
收藏
页码:149255 / 149269
页数:15
相关论文
共 50 条
  • [21] Machine learning approaches to network intrusion detection for contemporary internet traffic
    Ilyas, Muhammad U.
    Alharbi, Soltan Abed
    COMPUTING, 2022, 104 (05) : 1061 - 1076
  • [22] Applying machine learning techniques for detection of malicious code in network traffic
    Elovici, Yuval
    Shabtai, Asaf
    Moskovitch, Robert
    Tahan, Gil
    Glezer, Chanan
    KI 2007: ADVANCES IN ARTIFICIAL INTELLIGENCE, PROCEEDINGS, 2007, 4667 : 44 - +
  • [23] Analysis of Machine Learning Application in Campus Network Traffic Anomaly Detection
    Li R.
    Applied Mathematics and Nonlinear Sciences, 2024, 9 (01)
  • [24] Anomaly-Based Intrusion Detection by Machine Learning: A Case Study on Probing Attacks to an Institutional Network
    Tufan, Emrah
    Tezcan, Cihangir
    Acarturk, Cengiz
    IEEE ACCESS, 2021, 9 : 50078 - 50092
  • [25] Machine-Learning-Based Darknet Traffic Detection System for IoT Applications
    Abu Al-Haija, Qasem
    Krichen, Moez
    Abu Elhaija, Wejdan
    ELECTRONICS, 2022, 11 (04)
  • [26] Investigating the Effect of Traffic Sampling on Machine Learning-Based Network Intrusion Detection Approaches
    Alikhanov, Jumabek
    Jang, Rhongho
    Abuhamad, Mohammed
    Mohaisen, David
    Nyang, Daehun
    Noh, Youngtae
    IEEE ACCESS, 2022, 10 : 5801 - 5823
  • [27] Developing machine learning based framework for the network traffic prediction
    Murugesan, G.
    Jaiswal, Rachana
    Kshatri, Sapna Singh
    Bhonsle, Devanand
    INTERNATIONAL JOURNAL OF NEXT-GENERATION COMPUTING, 2022, 13 (03): : 777 - 784
  • [28] A Survey of Smart Home IoT Device Classification Using Machine Learning-Based Network Traffic Analysis
    Jmila, Houda
    Blanc, Gregory
    Shahid, Mustafizur R.
    Lazrag, Marwan
    IEEE ACCESS, 2022, 10 : 97117 - 97141
  • [29] Flow Based Botnet Traffic Detection Using Machine Learning
    Gahelot, Parul
    Dayal, Neelam
    PROCEEDINGS OF ICETIT 2019: EMERGING TRENDS IN INFORMATION TECHNOLOGY, 2020, 605 : 418 - 426
  • [30] Network Intrusion Detection for IoT Security Based on Learning Techniques
    Chaabouni, Nadia
    Mosbah, Mohamed
    Zemmari, Akka
    Sauvignac, Cyrille
    Faruki, Parvez
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2019, 21 (03): : 2671 - 2701