A Comprehensive Review of Tunnel Detection on Multilayer Protocols: From Traditional to Machine Learning Approaches

被引:1
|
作者
Sui, Zhonghang [1 ]
Shu, Hui [1 ]
Kang, Fei [1 ]
Huang, Yuyao [1 ]
Huo, Guoyu [1 ]
机构
[1] State Key Lab Math Engn & Adv Comp, Zhengzhou 450000, Peoples R China
来源
APPLIED SCIENCES-BASEL | 2023年 / 13卷 / 03期
关键词
cyber security; tunnel detection; network traffic; multilayer protocols; machine learning; COVERT CHANNELS; NETWORK;
D O I
10.3390/app13031974
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
Tunnels, a key technology of traffic obfuscation, are increasingly being used to evade censorship. While providing convenience to users, tunnel technology poses a hidden danger to cybersecurity due to its concealment and camouflage capabilities. In contrast to previous studies of encrypted traffic detection, we perform the first measurement study of tunnel traffic and its unique characteristics and focus on the challenges and solutions in detecting tunnel traffic among traditional and machine learning techniques. This study covers an almost twenty-year research period from 2003 to 2022. First, we present the concepts of two types of tunnels, broad and narrow tunnels, respectively, as well as a framework for major tunnel applications, such as Tor (the second-generation onion router), proxy, VPN, and their relationships. Second, we analyze state-of-the-art methods from traditional to machine learning applications to systematize tunnel traffic detection, including HTTP, HTTPS, DNS, SSH, TCP, ICMP and IPSec. A quantitative evaluation is presented with five crucial indicators applied to the detection methods and reviews. We further discuss the research work based on datasets, feature engineering, and challenges that have are solved, partly solved and unsolved. Finally, by providing open questions and the potential directions, we hope to inspire future work in this area.
引用
收藏
页数:30
相关论文
共 50 条
  • [1] A comprehensive review on detection of plant disease using machine learning and deep learning approaches
    Jackulin C.
    Murugavalli S.
    Measurement: Sensors, 2022, 24
  • [2] A comprehensive review of machine learning approaches for dyslexia diagnosis
    Ahire, Nitin
    Awale, R. N.
    Patnaik, Suprava
    Wagh, Abhay
    MULTIMEDIA TOOLS AND APPLICATIONS, 2023, 82 (09) : 13557 - 13577
  • [3] A comprehensive review of machine learning approaches for dyslexia diagnosis
    Nitin Ahire
    R.N. Awale
    Suprava Patnaik
    Abhay Wagh
    Multimedia Tools and Applications, 2023, 82 : 13557 - 13577
  • [4] A comprehensive review on synthetic approaches for metal-organic frameworks: From traditional solvothermal to greener protocols
    Sud, Dhiraj
    Kaur, Gagandeep
    POLYHEDRON, 2021, 193
  • [5] A comprehensive review on synthetic approaches for metal-organic frameworks: From traditional solvothermal to greener protocols
    Sud, Dhiraj
    Kaur, Gagandeep
    Polyhedron, 2021, 193
  • [6] Advanced detection techniques for driver drowsiness: a comprehensive review of machine learning, deep learning, and physiological approaches
    Kamboj M.
    Kadian K.
    Dwivedi V.
    Wary A.
    Ojha S.
    Multimedia Tools and Applications, 2024, 83 (42) : 90619 - 90682
  • [7] Machine Learning Approaches in Traditional Chinese Medicine: A Systematic Review
    Chen, Haiyang
    He, Yu
    AMERICAN JOURNAL OF CHINESE MEDICINE, 2022, 50 (01): : 91 - 131
  • [8] A comprehensive survey on machine learning approaches for fake news detection
    Alghamdi, Jawaher
    Luo, Suhuai
    Lin, Yuqing
    MULTIMEDIA TOOLS AND APPLICATIONS, 2023, 83 (17) : 51009 - 51067
  • [9] A comprehensive survey on machine learning approaches for fake news detection
    Jawaher Alghamdi
    Suhuai Luo
    Yuqing Lin
    Multimedia Tools and Applications, 2024, 83 : 51009 - 51067
  • [10] Writer identification using machine learning approaches: a comprehensive review
    Arshia Rehman
    Saeeda Naz
    Muhammad Imran Razzak
    Multimedia Tools and Applications, 2019, 78 : 10889 - 10931