Cyberattack event logs classification using deep learning with semantic feature analysis

被引:0
|
作者
Alzu'bi, Ahmad [1 ]
Darwish, Omar [2 ]
Albashayreh, Amjad [1 ]
Tashtoush, Yahya [1 ]
机构
[1] Jordan Univ Sci & Technol, Dept Comp Sci, Irbid, Jordan
[2] Eastern Michigan Univ, Informat Secur & Appl Comp, Ypsilanti, MI USA
关键词
Cyberattack; Event logs; Intrusion detection; Deep learning; BERT;
D O I
10.1016/j.cose.2024.104222
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Event logs playa crucial role in cybersecurity by detecting potentially malicious network activities and preventing data loss or theft. Previous work did not place a high value on log messages and their impact on security breach prediction and intrusion detection. This research paper introduces a novel approach for log message analysis applied to a dataset of event logs collected from various web sources. Event log messages were analyzed and categorized based on event and attack types with an explainable AI emphasizing the value of its key data. The study aims to enhance intrusion detection and minimize performance degradation by identifying suspicious events. In this regard, anew semantic vectorization framework is proposed, leveraging deep learning architectures to develop semantic discriminating log features, offering a cogent explanation and classification of event log messages. The use of BERT deep embeddings as a baseline for the prediction model allows for visualizing and interpreting the formulation of log message semantic features. Several empirical scenarios are set and conducted extensively to evaluate the performance of the event log classifier, considering the attack type, event type, and zero-shot logs. The experimental results demonstrate that the proposed event log classifier outperforms state-of-the-art machine learning models, achieving a recall of 99.27% and a precision of 99.29%. This highlights the model's ability to accurately identify events of a particular type by detecting as many suspicious events as feasible while minimizing the misclassification rate.
引用
收藏
页数:15
相关论文
共 50 条
  • [41] Deep Learning Based Video Event Classification
    Gencaslan, Serim
    Utku, Anil
    Akcayol, M. Ali
    JOURNAL OF POLYTECHNIC-POLITEKNIK DERGISI, 2023, 26 (03): : 1155 - 1165
  • [42] Automated cyberattack detection using optimal ensemble deep learning model
    Vaiyapuri, Thavavel
    Shankar, K.
    Rajendran, Surendran
    Kumar, Sachin
    Gaur, Vimal
    Gupta, Deepak
    Alharbi, Meshal
    TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2024, 35 (04)
  • [43] Deep and Discriminative Feature Learning for Fingerprint Classification
    Ge, Shishu
    Bai, Chaochao
    Liu, Yan
    Liu, Yonghong
    Zhao, Tong
    PROCEEDINGS OF 2017 3RD IEEE INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATIONS (ICCC), 2017, : 1942 - 1946
  • [44] Healthcare data analysis by feature extraction and classification using deep learning with cloud based cyber security
    Qamar, Shamimul
    COMPUTERS & ELECTRICAL ENGINEERING, 2022, 104
  • [45] Cross-Modal Event Retrieval: A Dataset and a Baseline Using Deep Semantic Learning
    Situ, Runwei
    Yang, Zhenguo
    Lv, Jianming
    Li, Qing
    Liu, Wenyin
    ADVANCES IN MULTIMEDIA INFORMATION PROCESSING - PCM 2018, PT II, 2018, 11165 : 147 - 157
  • [46] A MULTI-SCALE DEEP FEATURE LEARNING AND SEMANTIC ENHANCEMENT APPROACH FOR REMOTE SENSING SCENE CLASSIFICATION
    Huang, Hengyi
    Wang, Wenzhen
    Liao, Wenzhi
    Xiao, Liang
    IGARSS 2023 - 2023 IEEE INTERNATIONAL GEOSCIENCE AND REMOTE SENSING SYMPOSIUM, 2023, : 5419 - 5422
  • [47] Machine Learning Methods of Intelligent System Event Analysis for Multistep Cyberattack Detection
    Kotenko, I. V.
    Levshun, D. A.
    SCIENTIFIC AND TECHNICAL INFORMATION PROCESSING, 2024, 51 (05) : 372 - 381
  • [48] Towards a Semantic Video Analysis using Deep Learning and Ontology
    Bornia, Jemai
    Mahmoudi, Sidi Ahmed
    Frihida, Ali
    Manneback, Pierre
    2018 4TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING TECHNOLOGIES AND APPLICATIONS (CLOUDTECH), 2018,
  • [49] Sentiment Analysis and Classification Using Deep Semantic Information and Contextual Knowledge
    Al-Absi, Ahmed Abdulhakim
    Kang, Dae-Ki
    Al-Absi, Mohammed Abdulhakim
    CMC-COMPUTERS MATERIALS & CONTINUA, 2023, 74 (01): : 671 - 691
  • [50] Deep Semantic Segmentation Feature-Based Radiomics for the Classification Tasks in Medical Image Analysis
    Huang, Bingsheng
    Tian, Junru
    Zhang, Hongyuan
    Luo, Zixin
    Qin, Jing
    Huang, Chen
    He, Xueping
    Luo, Yanji
    Zhou, Yongjin
    Dan, Guo
    Chen, Hanwei
    Feng, Shi-Ting
    Yuan, Chenglang
    IEEE JOURNAL OF BIOMEDICAL AND HEALTH INFORMATICS, 2021, 25 (07) : 2655 - 2664