An Improved CNN-LSTM Algorithm for Detection of DGA Domain Name

被引:0
|
作者
Qi, Guorong [1 ]
Mao, Jian [1 ]
机构
[1] Jimei Univ, Coll Comp Engn, Xiamen 361021, Peoples R China
关键词
domain name generation algorithm; dictionary based domain name generation algorithm; convolutional neural network; long-term and short-term memory network; domain name detection;
D O I
10.1145/3650400.3650618
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Recently, zombie networks have utilized domain name generation algorithm (DGA) to generate a large number of malicious domain names for network attacks, posing a threat to network security. The existing DGA domain names are mainly divided into dictionary type and character type. However, traditional deep learning methods cannot simultaneously detect two types of DGA domain names, especially dictionary based DGA domain names. Therefore, this study proposes a network model that combines convolutional neural networks (CNN) and long-short term memory (LSTM) networks - the CNN-LSTM model. The model consists of three parts: character embedding layer, feature extraction layer, and fully connected layer. This model can extract N-grams features of domain name characters through CNN and input the extraction results to LSTM. At the same time, the model can choose to use multiple sets of CNN in combination with LSTM. In addition, based on the extracted features, this model can classify and predict domain names generated by dictionary based DGA. The experimental results show that the proposed model performs best when the convolutional kernel sizes selected by CNN are 3 and 4. In the comparative experiments of four dictionary based DGA families, the CNN-LSTM model showed a 3.0% improvement in accuracy compared to the CNN model, and as the number of sample families increased, the CNN-LSTM model exhibited better stability.
引用
下载
收藏
页码:1293 / 1298
页数:6
相关论文
共 50 条
  • [41] Towards effective detection of elderly falls with CNN-LSTM neural networks
    Garcia, Enol
    Villar, Mario
    Fanez, Mirko
    Villar, Jose R.
    de la Cal, Enrique
    Cho, Sung-Bae
    NEUROCOMPUTING, 2022, 500 : 231 - 240
  • [42] sEMG-Based Lower Limb Motion Prediction Using CNN-LSTM with Improved PCA Optimization Algorithm
    Meng Zhu
    Xiaorong Guan
    Zhong Li
    Long He
    Zheng Wang
    Keshu Cai
    Journal of Bionic Engineering, 2023, 20 : 612 - 627
  • [43] A CNN-LSTM hybrid network for automatic seizure detection in EEG signals
    Shanmugam, Shalini
    Dharmar, Selvathi
    NEURAL COMPUTING & APPLICATIONS, 2023, 35 (28): : 20605 - 20617
  • [44] Abnormality Detection Method for Wind Turbine Bearings Based on CNN-LSTM
    Zhang, Fanghong
    Zhu, Yuze
    Zhang, Chuanjiang
    Yu, Peng
    Li, Qingan
    ENERGIES, 2023, 16 (07)
  • [45] CNN-LSTM Combined Network for IoT Enabled Fall Detection Applications
    Xu, Jun
    He, Zunwen
    Zhang, Yan
    2019 3RD INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE, AUTOMATION AND CONTROL TECHNOLOGIES (AIACT 2019), 2019, 1267
  • [46] Domain Fusion CNN-LSTM for Short-Term Power Consumption Forecasting
    Shao, Xiaorui
    Pu, Chen
    Zhang, Yuxin
    Kim, Chang Soo
    IEEE ACCESS, 2020, 8 : 188352 - 188362
  • [47] A Hybrid CNN-LSTM Based Approach for Anomaly Detection Systems in SDNs
    Abdallah, Mahmoud Said
    Nhien-An-Le-Khac
    Jahromi, Hamed Z.
    Jurcut, Anca Delia
    ARES 2021: 16TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, 2021,
  • [48] Development of CNN-LSTM combinational architecture for COVID-19 detection
    Narula A.
    Vaegae N.K.
    Journal of Ambient Intelligence and Humanized Computing, 2023, 14 (03) : 2645 - 2656
  • [49] Deep CNN-LSTM with Word Embeddings for News Headline Sarcasm Detection
    Mandal, Paul K.
    Mahto, Rakeshkumar
    16TH INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY-NEW GENERATIONS (ITNG 2019), 2019, 800 : 495 - 498
  • [50] A hybrid CNN-LSTM approach for intelligent cyber intrusion detection system
    Bamber, Sukhvinder Singh
    Katkuri, Aditya Vardhan Reddy
    Sharma, Shubham
    Angurala, Mohit
    Computers and Security, 2025, 148