Deep-Learning Based Injection Attacks Detection Method for HTTP

被引:2
|
作者
Zhao, Chunhui [1 ]
Si, Shuaijie [1 ]
Tu, Tengfei [1 ]
Shi, Yijie [1 ]
Qin, Sujuan [1 ]
机构
[1] Beijing Univ Posts & Telecommun, State Key Lab Networking & Switching Technol, Beijing 100876, Peoples R China
关键词
cyber attacks; command injection; deep learning; cyber security; feature fusion; sample generation;
D O I
10.3390/math10162914
中图分类号
O1 [数学];
学科分类号
0701 ; 070101 ;
摘要
In the context of the new era of high digitization and informatization, the emergence of the internet and artificial intelligence technologies has profoundly changed people's lifestyles. The traditional cyber attack detection has become increasingly weak in the context of the increasingly complex network environment in the new era, and deep learning technology has begun to play a significant role in the field of network security. There are many kinds of attacks against web applications, which are very harmful, including SQL (Structured Query Language) injection, XSS (Cross-Site Scripting), and command injection. Based on the detection of SQL injection and XSS attacks, this paper combines the detection of command injection attacks, which are also very harmful, and proposes a multi-classification detection method for web injection attacks. We extract features in the URL (Uniform Resource Locator) and request body of HTTP (Hyper Text Transfer Protocol) requests and combine deep learning technology to build a multi-classification model for injection attacks. Firstly, aiming at the problem of imbalanced distribution of training samples and low detection accuracy of command injection attack, a sample generation method is proposed. The experimental results show that the proposed method ensures a higher detection rate of command injection attacks and lower false alarms. Secondly, we propose a more expressive feature fusion model, which effectively combines the features extracted by deep learning with the discrete features extracted manually. The experimental results show that the feature fusion model proposed in this work is more effective compared with a single deep learning model. The accuracy of the model is improved by about 1%.
引用
收藏
页数:17
相关论文
共 50 条
  • [1] Deep-Learning Based Detection for Cyber-Attacks in IoT Networks: A Distributed Attack Detection Framework
    Olivia Jullian
    Beatriz Otero
    Eva Rodriguez
    Norma Gutierrez
    Héctor Antona
    Ramon Canal
    [J]. Journal of Network and Systems Management, 2023, 31
  • [2] Deep-Learning Based Detection for Cyber-Attacks in IoT Networks: A Distributed Attack Detection Framework
    Jullian, Olivia
    Otero, Beatriz
    Rodriguez, Eva
    Gutierrez, Norma
    Antona, Hector
    Canal, Ramon
    [J]. JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2023, 31 (02)
  • [3] SpikeDeeptector: a deep-learning based method for detection of neural spiking activity
    Saif-ur-Rehman, Muhammad
    Lienkaemper, Robin
    Parpaley, Yaroslav
    Wellmer, Joerg
    Liu, Charles
    Lee, Brian
    Kellis, Spencer
    Andersen, Richard
    Iossifidis, Ioannis
    Glasmachers, Tobias
    Klaes, Christian
    [J]. JOURNAL OF NEURAL ENGINEERING, 2019, 16 (05)
  • [4] Novel coronavirus pneumonia detection and segmentation based on the deep-learning method
    Zhang, Zhiliang
    Ni, Xinye
    Huo, Guanying
    Li, Qingwu
    Qi, Fei
    [J]. ANNALS OF TRANSLATIONAL MEDICINE, 2021, 9 (11)
  • [5] Adversarial Attacks on Deep-Learning Based Radio Signal Classification
    Sadeghi, Meysam
    Larsson, Erik G.
    [J]. IEEE WIRELESS COMMUNICATIONS LETTERS, 2019, 8 (01) : 213 - 216
  • [6] An unsupervised detection method for shilling attacks based on deep learning and community detection
    Yaojun Hao
    Fuzhi Zhang
    [J]. Soft Computing, 2021, 25 : 477 - 494
  • [7] An unsupervised detection method for shilling attacks based on deep learning and community detection
    Hao, Yaojun
    Zhang, Fuzhi
    [J]. SOFT COMPUTING, 2021, 25 (01) : 477 - 494
  • [8] Cylindrical secondary battery defect detection method based on unsupervised deep-learning
    Han, Hyeon-Gyu
    Kim, Ho-Yeon
    Cho, Jae-Soo
    [J]. Journal of Institute of Control, Robotics and Systems, 2021, 27 (08) : 510 - 517
  • [9] IDD-Net: Industrial defect detection method based on Deep-Learning
    Zhang, Zekai
    Zhou, Mingle
    Wan, Honglin
    Li, Min
    Li, Gang
    Han, Delong
    [J]. ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2023, 123
  • [10] Generative UAP attacks against deep-learning based modulation classification
    Li, Xiong
    Rao, Wengui
    Chen, Shaoping
    [J]. IET COMMUNICATIONS, 2023, 17 (09) : 1091 - 1102