Detection of Fast-Flux Networks Using Various DNS Feature Sets

被引:0
|
作者
Celik, Z. Berkay [1 ]
Oktug, Serna [1 ]
机构
[1] Istanbul Tech Univ, Dept Comp Engn, TR-34469 Istanbul, Turkey
关键词
network security; Fast-flux Service Networks (FFSNs); feature selection; classification;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
In this work, we study the detection of Fast-Flux Service Networks (FFSNs) using DNS (Domain Name System) response packets. We have observed that current approaches do not employ a large combination of DNS features to feed into the proposed detection systems. The lack of features may lead to high false positive or false negative rates triggered by benign activities including Content Distribution Networks (CDNs). In this paper, we study recently proposed detection frameworks to construct a high-dimensional feature vector containing timing, network, spatial, domain name, and DNS response information. In the detection system, we strive to use features that are delayfree, and lightweight in terms of storage and computational cost. Feature sub-spaces are evaluated using a C4.5 decision tree classifier by excluding redundant features using the information gain of each feature with respect to each class. Our experiments reveal the performance of each feature subset type in terms of the classification accuracy. Moreover, we present the best feature subset for the discrimination of FFSNs recorded with the datasets we used.
引用
收藏
页数:6
相关论文
共 50 条
  • [41] Early Detection of Malicious Flux Networks via Large-Scale Passive DNS Traffic Analysis
    Perdisci, Roberto
    Corona, Igino
    Giacinto, Giorgio
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2012, 9 (05) : 714 - 726
  • [42] Object Detection on Deformable Surfaces using Local Feature Sets
    Kaleli, Fatih
    Aydin, Nizamettin
    2017 IEEE INTERNATIONAL CONFERENCE ON POWER, CONTROL, SIGNALS AND INSTRUMENTATION ENGINEERING (ICPCSI), 2017, : 185 - 189
  • [43] Fast, Accurate, and Stable Feature Selection Using Neural Networks
    Deraeve, James
    Alexander, William H.
    NEUROINFORMATICS, 2018, 16 (02) : 253 - 268
  • [44] Fast, Accurate, and Stable Feature Selection Using Neural Networks
    James Deraeve
    William H. Alexander
    Neuroinformatics, 2018, 16 : 253 - 268
  • [45] Chinese Accent Detection Using Acoustic Feature Sets with Context Features
    Zhao YunXue
    Zheng ShiJie
    Zhang Long
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON LOGISTICS, ENGINEERING, MANAGEMENT AND COMPUTER SCIENCE, 2014, 101 : 1015 - 1018
  • [46] Feature selection for a fast speaker detection system with neural networks and Genetic Algorithms
    Quixtiano-Xicohtencatl, Rocio
    Flores-Pulido, Leticia
    Reyes-Galaviz, Orion Fausto
    CIC 2006: 15TH INTERNATIONAL CONFERENCE ON COMPUTING, PROCEEDINGS, 2006, : 126 - +
  • [47] Pattern detection using fast normalized neural networks
    El-Bakry, HM
    ARTIFICIAL NEURAL NETWORKS: BIOLOGICAL INSPIRATIONS - ICANN 2005, PT 1, PROCEEDINGS, 2005, 3696 : 447 - 454
  • [48] Feature Extraction using Time-Frequency/Scale Analysis and Ensemble of Feature Sets for Crackle Detection
    Serbes, Gorkem
    Sakar, C. Okan
    Kahya, Yasemin P.
    Aydin, Nizamettin
    2011 ANNUAL INTERNATIONAL CONFERENCE OF THE IEEE ENGINEERING IN MEDICINE AND BIOLOGY SOCIETY (EMBC), 2011, : 3314 - 3317
  • [49] Human Detection Based on Large Feature Sets Using Graphics Processing Units
    Schwartz, William Robson
    INFORMATICA-JOURNAL OF COMPUTING AND INFORMATICS, 2011, 35 (04): : 473 - 479
  • [50] Improving ML Detection of IoT Botnets using Comprehensive Data and Feature Sets
    Mehra, Misha
    Paranjape, Jay N.
    Ribeiro, Vinay J.
    2021 INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS & NETWORKS (COMSNETS), 2021, : 438 - 446