Detecting Black IP Using for Classification and Analysis Through Source IP of Daily Darknet Traffic

被引:0
|
作者
Park, Jinhak [1 ]
Choi, Jangwon [1 ]
Song, Jungsuk [1 ,2 ]
机构
[1] Korea Inst Sci & Technol Informat, Daejeon, South Korea
[2] Korea Univ Sci & Technol, Daejeon, South Korea
关键词
Darknet; Network vulnerabillty; Detection of black IP;
D O I
10.1007/978-3-319-70139-4_43
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Recently, the community is recognizing to an importance of network vulnerability. Also, through the using this vulnerability, attackers can acquire the information of vulnerable users. Therefore, many researchers have been studying about a countermeasure of network vulnerabillty. In recent, the darknet is a received attention to research for detecting action of attackers. The means of darknet are formed a set of unused IP addresses and no real systems of connect to the darknet. In this paper, we proposed an using darknet for the detecting black IPs. So, it was choosen to classification and analysis through source IP of daily darknet traffic. The proposed method prepared 8,192 destination IP addresses in darknet space and collected the darknet traffic during 1 months. It collected total 277,002,257 in 2016, August. An applied results of the proposed process were seen for an effectiveness of pre-detection for real attacks.
引用
下载
收藏
页码:427 / 433
页数:7
相关论文
共 50 条
  • [21] Darknet Traffic Analysis and Classification Using Numerical AGM and Mean Shift Clustering Algorithm
    Niranjana R.
    Kumar V.A.
    Sheen S.
    SN Computer Science, 2020, 1 (1)
  • [22] Darknet traffic classification and adversarial attacks using machine learning
    Rust-Nguyen, Nhien
    Sharma, Shruti
    Stamp, Mark
    COMPUTERS & SECURITY, 2023, 127
  • [23] Hardware IP Classification through Weighted Characteristics
    McGeehan, Brendan
    Smith, Flora
    Le, Thao
    Nauman, Hunter
    Di, Jia
    2019 IEEE HIGH PERFORMANCE EXTREME COMPUTING CONFERENCE (HPEC), 2019,
  • [24] Detection and classification of darknet traffic using machine learning methods
    Ugurlu, Mesut
    Dogru, Ibrahim Alper
    Arslan, Recep Sinan
    JOURNAL OF THE FACULTY OF ENGINEERING AND ARCHITECTURE OF GAZI UNIVERSITY, 2023, 38 (03): : 1737 - 1746
  • [25] Proactively detecting distributed denial of service attacks using source IP address monitoring
    Peng, T
    Leckie, C
    Ramamohanarao, K
    NETWORKING 2004: NETWORKING TECHNOLOGIES, SERVICES, AND PROTOCOLS; PERFORMANCE OF COMPUTER AND COMMUNICATION NETWORKS; MOBILE AND WIRELESS COMMUNICATIONS, 2004, 3042 : 771 - 782
  • [26] Analysis of IP Prefix Hijacking and Traffic Interception
    Latt, Khin Thida
    Ohara, Yasuhiro
    Uda, Satoshi
    Shinoda, Yoichi
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2010, 10 (07): : 22 - 31
  • [27] The Analysis of Traffic of IP Packets using CGH Self Organizing Maps
    Dozono, Hiroshi
    Okada, Nozomu
    2015 INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE AND COMPUTATIONAL INTELLIGENCE (CSCI), 2015, : 215 - 219
  • [28] Measurement-based Emulation of Equivalent IP Traffic Source
    Huremovic, Adnan
    Hadzialic, Mesud
    Seper, Melisa
    Halilovic, Ajla
    Sulovic, Maja
    Raca, Darijo
    PROCEEDINGS ELMAR-2010, 2010, : 211 - 214
  • [29] Analysis of ADSL traffic on an IP backbone link
    Ben, N
    Guillemin, A
    Guillemin, F
    GLOBECOM'03: IEEE GLOBAL TELECOMMUNICATIONS CONFERENCE, VOLS 1-7, 2003, : 3742 - 3746
  • [30] Mini-IPC: A Minimalist Approach for HTTP Traffic Classification using IP Addresses
    Casas, Pedro
    Fiadino, Pierdomenico
    2013 9TH INTERNATIONAL WIRELESS COMMUNICATIONS AND MOBILE COMPUTING CONFERENCE (IWCMC), 2013, : 71 - 76