Detection of Encrypted Cryptomining Malware Connections With Machine and Deep Learning

被引:34
|
作者
Pastor, Antonio [1 ]
Mozo, Alberto [2 ]
Vakaruk, Stanislav [2 ]
Canavese, Daniele [3 ]
Lopez, Diego R. [1 ]
Regano, Leonardo [3 ]
Gomez-Canaval, Sandra [2 ]
Lioy, Antonio [3 ]
机构
[1] Telefon I D, Madrid 28010, Spain
[2] Univ Politecn Madrid, Dept Sistemas Informat, Madrid 28031, Spain
[3] Politecn Torino, Dipartimento Automat & Informat, I-10129 Turin, Italy
来源
IEEE ACCESS | 2020年 / 8卷
基金
欧盟地平线“2020”;
关键词
Machine learning; Cryptocurrency; Servers; Data mining; Malware; Protocols; Cryptomining detection; malware detection; cryptojacking detection; cryptocurrency mining; netflow measurements; encrypted traffic classification; machine learning; deep learning;
D O I
10.1109/ACCESS.2020.3019658
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Nowadays, malware has become an epidemic problem. Among the attacks exploiting the computer resources of victims, one that has become usual is related to the massive amounts of computational resources needed for digital currency cryptomining. Cybercriminals steal computer resources from victims, associating these resources to the crypto-currency mining pools they benefit from. This research work focuses on offering a solution for detecting such abusive cryptomining activity, just by means of passive network monitoring. To this end, we identify a new set of highly relevant network flow features to be used jointly with a rich set of machine and deep-learning models for real-time cryptomining flow detection. We deployed a complex and realistic cryptomining scenario for training and testing machine and deep learning models, in which clients interact with real servers across the Internet and use encrypted connections. A complete set of experiments were carried out to demonstrate that, using a combination of these highly informative features with complex machine learning models, cryptomining attacks can be detected on the wire with telco-grade precision and accuracy, even if the traffic is encrypted.
引用
收藏
页码:158036 / 158055
页数:20
相关论文
共 50 条
  • [21] Feature mining for encrypted malicious traffic detection with deep learning and other machine learning algorithms
    Wang, Zihao
    Thing, Vrizlynn L. L.
    COMPUTERS & SECURITY, 2023, 128
  • [22] Cryptomining Detection in Container Clouds Using System Calls and Explainable Machine Learning
    Karn, Rupesh Raj
    Kudva, Prabhakar
    Huang, Hai
    Suneja, Sahil
    Elfadel, Ibrahim M.
    IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2021, 32 (03) : 674 - 691
  • [23] Detection of Malware by Deep Learning as CNN-LSTM Machine Learning Techniques in Real Time
    Akhtar, Muhammad Shoaib
    Feng, Tao
    SYMMETRY-BASEL, 2022, 14 (11):
  • [24] Malware Detection with Malware Images using Deep Learning Techniques
    He, Ke
    Kim, Dong Seong
    2019 18TH IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS/13TH IEEE INTERNATIONAL CONFERENCE ON BIG DATA SCIENCE AND ENGINEERING (TRUSTCOM/BIGDATASE 2019), 2019, : 95 - 102
  • [25] Poster Abstract: Encrypted Malware Traffic Detection Using Incremental Learning
    Lee, Insup
    Roh, Heejun
    Lee, Wonjun
    IEEE INFOCOM 2020 - IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (INFOCOM WKSHPS), 2020, : 1348 - 1349
  • [26] An Android Malware Detection Leveraging Machine Learning
    Shatnawi, Ahmed S.
    Jaradat, Aya
    Yaseen, Tuqa Bani
    Taqieddin, Eyad
    Al-Ayyoub, Mahmoud
    Mustafa, Dheya
    WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2022, 2022
  • [27] The Curious Case of Machine Learning in Malware Detection
    Saad, Sherif
    Briguglio, William
    Elmiligi, Haytham
    PROCEEDINGS OF THE 5TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY (ICISSP), 2019, : 528 - 535
  • [28] Evaluation of Machine Learning Algorithms for Malware Detection
    Akhtar, Muhammad Shoaib
    Feng, Tao
    SENSORS, 2023, 23 (02)
  • [29] Analysis of machine learning models for malware detection
    Rahul
    Kedia, Priyansh
    Sarangi, Subrat
    Monika
    JOURNAL OF DISCRETE MATHEMATICAL SCIENCES & CRYPTOGRAPHY, 2020, 23 (02): : 395 - 407
  • [30] Building a Machine Learning Classifier for Malware Detection
    Markel, Zane
    Bilzor, Michael
    2014 SECOND WORKSHOP ON ANTI-MALWARE TESTING RESEARCH (WATER), 2014, : 20 - 23