A Payload Based Malicious HTTP Traffic Detection Method Using Transfer Semi-Supervised Learning

被引:10
作者
Chen, Tieming [1 ]
Chen, Yunpeng [1 ]
Lv, Mingqi [1 ]
He, Gongxun [1 ]
Zhu, Tiantian [1 ]
Wang, Ting [1 ]
Weng, Zhengqiu [1 ]
机构
[1] Zhejiang Univ Technol, Coll Comp Sci, Hangzhou 310023, Peoples R China
来源
APPLIED SCIENCES-BASEL | 2021年 / 11卷 / 16期
基金
中国国家自然科学基金;
关键词
malicious traffic detection; HTTP payload; Data augmentation; Transfer learning; semi-supervised learning;
D O I
10.3390/app11167188
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
Malicious HTTP traffic detection plays an important role in web application security. Most existing work applies machine learning and deep learning techniques to build the malicious HTTP traffic detection model. However, they still suffer from the problems of huge training data collection cost and low cross-dataset generalization ability. Aiming at these problems, this paper proposes DeepPTSD, a deep learning method for payload based malicious HTTP traffic detection. First, it treats the malicious HTTP traffic detection as a text classification problem and trains the initial detection model using TextCNN on a public dataset, and then adapts the initial detection model to the target dataset based on a transfer learning algorithm. Second, in the transfer learning procedure, it uses a semi-supervised learning algorithm to accomplish the model adaptation task. The semi-supervised learning algorithm enhances the target dataset based on a HTTP payload data augmentation mechanism to exploit both the labeled and unlabeled data. We evaluate DeepPTSD on two real HTTP traffic datasets. The results show that DeepPTSD has competitive performance under the small data condition.
引用
收藏
页数:15
相关论文
共 44 条
[1]  
[Anonymous], 2013, word2vec
[2]  
[Anonymous], 2017, ARXIV170208568CS
[3]  
Bapat Rohan, 2018, 2018 Systems and Information Engineering Design Symposium (SIEDS), P266, DOI 10.1109/SIEDS.2018.8374749
[4]  
Chen Z., 2018, ARXIV180405298
[5]   Commonsense Reasoning and Commonsense Knowledge in Artificial Intelligence [J].
Davis, Ernest ;
Marcus, Gary .
COMMUNICATIONS OF THE ACM, 2015, 58 (09) :92-103
[6]  
Draper-Gil Gerard, 2016, ICISSP 2016. 2nd International Conference on Information Systems Security and Privacy. Proceedings, P407
[7]   Providing Email Privacy by Preventing Webmail from Loading Malicious XSS Payloads [J].
Fang, Yong ;
Xu, Yijia ;
Jia, Peng ;
Huang, Cheng .
APPLIED SCIENCES-BASEL, 2020, 10 (13)
[8]  
FSecurify, 2017, US MACH LEARN TO DET
[9]  
Hinton Geoffrey E., 2015, NIPS DEEP LEARN REPR
[10]  
Jadidi Z., 2015, SIGN PROC COMM SYST, P1