Detection of malicious and non-malicious website visitors using unsupervised neural network learning

被引:76
|
作者
Stevanovic, Dusan [1 ]
Vlajic, Natalija [1 ]
An, Aijun [1 ]
机构
[1] York Univ, Dept Comp Sci & Engn, Toronto, ON M3J 1P3, Canada
关键词
Web crawler detection; Neural networks; Web server access logs; Machine learning; Clustering; Denial of service;
D O I
10.1016/j.asoc.2012.08.028
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Distributed denials of service (DDoS) attacks are recognized as one of the most damaging attacks on the Internet security today. Recently, malicious web crawlers have been used to execute automated DDoS attacks on web sites across the WWW. In this study, we examine the use of two unsupervised neural network (NN) learning algorithms for the purpose web-log analysis: the Self-Organizing Map (SOM) and Modified Adaptive Resonance Theory 2 (Modified ART2). In particular, through the use of SOM and modified ART2, our work aims to obtain a better insight into the types and distribution of visitors to a public web-site based on their browsing behavior, as well as to investigate the relative differences and/or similarities between malicious web crawlers and other non-malicious visitor groups. The results of our study show that, even though there is a pretty clear separation between malicious web-crawlers and other visitor groups, 52% of malicious crawlers exhibit very 'human-like' browsing behavior and as such pose a particular challenge for future web-site security systems. Also, we show that some of the feature values of malicious crawlers that exhibit very 'human-like' browsing behavior are not significantly different than the features values of human visitors. Additionally, we show that Google, MSN and Yahoo crawlers exhibit distinct crawling behavior. (C) 2012 Elsevier B. V. All rights reserved.
引用
收藏
页码:698 / 708
页数:11
相关论文
共 50 条
  • [41] Malicious Http Request Detection Using Code-Level Convolutional Neural Network
    Jemal, Ines
    Haddar, Mohamed Amine
    Cheikhrouhou, Omar
    Mahfoudhi, Adel
    [J]. RISKS AND SECURITY OF INTERNET AND SYSTEMS (CRISIS 2020), 2021, 12528 : 317 - 324
  • [42] Malicious Network Traffic Detection in loT Environments Using A Multi-level Neural
    Li, Menglu
    Achiluzzi, Eleonora
    Al Georgy, Md Fand
    Kashef, Rasha
    [J]. 2021 IEEE INTL CONF ON DEPENDABLE, AUTONOMIC AND SECURE COMPUTING, INTL CONF ON PERVASIVE INTELLIGENCE AND COMPUTING, INTL CONF ON CLOUD AND BIG DATA COMPUTING, INTL CONF ON CYBER SCIENCE AND TECHNOLOGY CONGRESS DASC/PICOM/CBDCOM/CYBERSCITECH 2021, 2021, : 169 - 175
  • [43] Malicious URL and Intrusion Detection using Machine Learning
    Hamza, Amr
    Hammam, Farah
    Abouzeid, Medhat
    Ahmed, Mohammad Arsalan
    Dhou, Salam
    Aloul, Fadi
    [J]. 38TH INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING, ICOIN 2024, 2024, : 795 - 800
  • [44] Non-interactive detection of malicious vehicular network data
    [J]. 1600, River Publishers (01):
  • [45] AGAE: Unsupervised Anomaly Detection for Encrypted Malicious Traffic
    Wang, Hao
    Wang, Ye
    Gu, Zhaoquan
    Jia, Yan
    [J]. WEB AND BIG DATA, APWEB-WAIM 2024, PT IV, 2024, 14964 : 448 - 464
  • [46] Black box attack and network intrusion detection using machine learning for malicious traffic
    Zhu, Yiran
    Cui, Lei
    Ding, Zhenquan
    Li, Lun
    Liu, Yongji
    Hao, Zhiyu
    [J]. COMPUTERS & SECURITY, 2022, 123
  • [47] Unsupervised malicious domain detection with less labeling effort
    Park, Kyung Ho
    Song, Hyun Min
    Yoo, Jeong Do
    Hong, Su-Youn
    Cho, Byoungmo
    Kim, Kwangsoo
    Kim, Huy Kang
    [J]. COMPUTERS & SECURITY, 2022, 116
  • [48] Malicious Network Traffic Detection for DNS over HTTPS using Machine Learning Algorithms
    Casanova, Lionel F. Gonzalez
    Lin, Po-Chiang
    [J]. APSIPA TRANSACTIONS ON SIGNAL AND INFORMATION PROCESSING, 2023, 12 (02)
  • [49] Analysing Non-Malicious Threats to Urban Smart Grids by Interrelating Threats and Threat Taxonomies
    Vasenev, Alexandr
    Montoya, Lorena
    [J]. IEEE SECOND INTERNATIONAL SMART CITIES CONFERENCE (ISC2 2016), 2016, : 811 - 814
  • [50] MLTracer: Malicious Logins Detection System via Graph Neural Network
    Liu, Fucheng
    Wen, Yu
    Wu, Yanna
    Liang, Shuangshuang
    Jiang, Xihe
    Meng, Dan
    [J]. 2020 IEEE 19TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM 2020), 2020, : 715 - 726