Anomaly Detection in Encrypted Internet Traffic Using Hybrid Deep Learning

被引:13
|
作者
Bakhshi, Taimur [1 ,2 ]
Ghita, Bogdan [2 ]
机构
[1] Natl Univ Comp & Emerging Sci, Ctr Informat Management & Cyber Secur, Lahore, Pakistan
[2] Univ Plymouth, Ctr Secur Commun & Networking Res, Plymouth, Devon, England
关键词
NETWORK; CLASSIFICATION;
D O I
10.1155/2021/5363750
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
An increasing number of Internet application services are relying on encrypted traffic to offer adequate consumer privacy. Anomaly detection in encrypted traffic to circumvent and mitigate cyber security threats is, however, an open and ongoing research challenge due to the limitation of existing traffic classification techniques. Deep learning is emerging as a promising paradigm, allowing reduction in manual determination of feature set to increase classification accuracy. The present work develops a deep learning-based model for detection of anomalies in encrypted network traffic. Three different publicly available datasets including the NSL-KDD, UNSW-NB15, and CIC-IDS-2017 are used to comprehensively analyze encrypted attacks targeting popular protocols. Instead of relying on a single deep learning model, multiple schemes using convolutional (CNN), long short-term memory (LSTM), and recurrent neural networks (RNNs) are investigated. Our results report a hybrid combination of convolutional (CNN) and gated recurrent unit (GRU) models as outperforming others. The hybrid approach benefits from the low-latency feature derivation of the CNN, and an overall improved training dataset fitting. Additionally, the highly effective generalization offered by GRU results in optimal time-domain-related feature extraction, resulting in the CNN and GRU hybrid scheme presenting the best model.
引用
收藏
页数:16
相关论文
共 50 条
  • [1] Efficient Approach for Anomaly Detection in Internet of Things Traffic Using Deep Learning
    Imtiaz, Syed Ibrahim
    Khan, Liaqat Ali
    Almadhor, Ahmad S.
    Abbas, Sidra
    Alsubai, Shtwai
    Gregus, Michal
    Jalil, Zunera
    WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2022, 2022
  • [2] Detection of DoH Traffic Tunnels Using Deep Learning for Encrypted Traffic Classification
    Alzighaibi, Ahmad Reda
    COMPUTERS, 2023, 12 (03)
  • [3] MEMTD: Encrypted Malware Traffic Detection Using Multimodal Deep Learning
    Zhang, Xiaotian
    Lu, Jintian
    Sun, Jiakun
    Xiao, Ruizhi
    Jin, Shuyuan
    WEB ENGINEERING (ICWE 2022), 2022, 13362 : 357 - 372
  • [4] Anomaly Detection in Traffic Surveillance Videos Using Deep Learning
    Khan, Sardar Waqar
    Hafeez, Qasim
    Khalid, Muhammad Irfan
    Alroobaea, Roobaea
    Hussain, Saddam
    Iqbal, Jawaid
    Almotiri, Jasem
    Ullah, Syed Sajid
    SENSORS, 2022, 22 (17)
  • [5] Anomaly Detection in Encrypted Identity Resolution Traffic based on Machine Learning
    Zhu, Zhishen
    Zhou, Hao
    Yang, Qingya
    Wang, Chonghua
    Li, Zhen
    2022 IEEE 22ND INTERNATIONAL CONFERENCE ON SOFTWARE QUALITY, RELIABILITY AND SECURITY, QRS, 2022, : 264 - 275
  • [6] Near-real-time Anomaly Detection in Encrypted Traffic using Machine Learning Techniques
    Ucci, Daniele
    Sobrero, Filippo
    Bisio, Federica
    Zorzino, Matteo
    2021 IEEE SYMPOSIUM SERIES ON COMPUTATIONAL INTELLIGENCE (IEEE SSCI 2021), 2021,
  • [7] Network traffic inspection to enhance anomaly detection in the Internet of Things using attention-driven Deep Learning
    Hernandez-Jaimes, Mireya Lucia
    Martinez-Cruz, Alfonso
    Ramirez-Gutierrez, Kelsey Alejandra
    Morales-Reyes, Alicia
    INTEGRATION-THE VLSI JOURNAL, 2025, 103
  • [8] Anomaly detection framework for Internet of things traffic using vector convolutional deep learning approach in fog environment
    Amma, Bhuvaneswari N. G.
    Selvakumar, S.
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2020, 113 : 255 - 265
  • [9] HALNet: A Hybrid Deep Learning Model for Encrypted C&C Malware Traffic Detection
    Li, Ruiyuan
    Song, Zehui
    Xie, Wei
    Zhang, Chengwei
    Zhong, Guohui
    Pei, Xiaobing
    NETWORK AND SYSTEM SECURITY, NSS 2021, 2021, 13041 : 326 - 339
  • [10] Mobile Encrypted Traffic Classification Using Deep Learning
    Aceto, Giuseppe
    Ciuonzo, Domenico
    Montieri, Antonio
    Pescape, Antonio
    2018 NETWORK TRAFFIC MEASUREMENT AND ANALYSIS CONFERENCE (TMA), 2018,