MFFAN: Multiple Features Fusion with Attention Networks for Malicious Traffic Detection

被引:2
|
作者
Huang, Weiqing [1 ,2 ]
Han, Xinbo [1 ,2 ]
Zhang, Meng [1 ,2 ]
Le, Min [1 ,2 ]
Liu, Wen [1 ,2 ]
Yang, Zheng [1 ]
Yang, Haitian [1 ,2 ]
机构
[1] Chinese Acad Sci, Inst Informat Engn, Beijing, Peoples R China
[2] Univ Chinese Acad Sci, Sch Cyber Secur, Beijing, Peoples R China
关键词
self-attention; co-attention; deep learning; malicious traffic detection; multiple features; INTRUSION; ARCHITECTURE;
D O I
10.1109/TrustCom56396.2022.00061
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Malicious traffic detection is an important task in network security, which protects the target network from privacy leakage and service paralysis. The complexity of the network and the hierarchical structure of network traffic, i.e, byte-packet-flow, indicate the diversity of traffic information. Most of the existing work only uses one feature or statistical feature, and cannot learn network traffic from multiple perspectives, i.e, shortsighted, which results in the lack of important information in network traffic. Meanwhile, after obtaining multiple features, the effective fusion of multiple features is also an urgent problem to be solved. In this paper, we propose a Multiple Features Fusion with Attention Networks (MFFAN). According to the hierarchical structure of network traffic, we extract byte, packet, and statistical features from original traffic files to learn traffic from multiple perspectives, overcoming shortsighted. To effectively fuse multiple features, we use the self-attention to learn the intra-feature relationship with each feature and use the co-attention to learn the inter-feature relationship between features. We conduct experiments on the ISCIDS2012 dataset and CICIDS2017 dataset, and the results show that our model achieves an effective fusion of multiple features and high accuracy.
引用
收藏
页码:391 / 398
页数:8
相关论文
共 50 条
  • [41] Malicious Encryption Traffic Detection Based on NLP
    Yang, Hao
    He, Qin
    Liu, Zhenyan
    Zhang, Qian
    SECURITY AND COMMUNICATION NETWORKS, 2021, 2021 (2021)
  • [42] Balancing the Detection of Malicious Traffic in SDN Context
    Machado, Bruno Salgado
    Silva, Joao Marco C.
    Lima, Solange Rito
    Carvalho, Paulo
    12TH INTERNATIONAL CONFERENCE ON UBIQUITOUS AND FUTURE NETWORKS (ICUFN 2021), 2021, : 106 - 111
  • [43] Graph based encrypted malicious traffic detection with hybrid analysis of multi-view features
    Hong, Yueping
    Li, Qi
    Yang, Yanqing
    Shen, Meng
    INFORMATION SCIENCES, 2023, 644
  • [44] Detecting Offensive Language Based on Graph Attention Networks and Fusion Features
    Miao, Zhenxiong
    Chen, Xingshu
    Wang, Haizhou
    Tang, Rui
    Yang, Zhou
    Huang, Tiemai
    Tang, Wenyi
    IEEE TRANSACTIONS ON COMPUTATIONAL SOCIAL SYSTEMS, 2024, 11 (01) : 1493 - 1505
  • [45] DNS Traffic Analysis for Malicious Domains Detection
    Ghafir, Ibrahim
    Prenosil, Vaclav
    2ND INTERNATIONAL CONFERENCE ON SIGNAL PROCESSING AND INTEGRATED NETWORKS (SPIN) 2015, 2015, : 613 - 618
  • [46] Malicious Domain Detection Based on Traffic Similarity
    Hu, Jianping
    Wang, Yongyi
    Shi, Fan
    Xu, Chengxi
    2ND INTERNATIONAL CONFERENCE ON COMPUTER ENGINEERING, INFORMATION SCIENCE AND INTERNET TECHNOLOGY, CII 2017, 2017, : 416 - 421
  • [47] Multi-field relation mining for malicious HTTP traffic detection based on attention and cross network
    Wu, Bolun
    Zou, Futai
    Zhang, Chengwei
    Yu, Tangda
    Li, Yun
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2023, 73
  • [48] Detection and Countermeasure of Encrypted Malicious Traffic: A Survey
    Hou J.
    Lu H.
    Liu F.-A.
    Wang X.-W.
    Tian Z.-H.
    Ruan Jian Xue Bao/Journal of Software, 2024, 35 (01): : 333 - 355
  • [49] Salient object detection based on fusion of multiple features
    Gu, Lingkang
    BASIC & CLINICAL PHARMACOLOGY & TOXICOLOGY, 2018, 124 : 75 - 76
  • [50] Attention Pyramid Networks for Object Detection With Semantic Information Fusion
    Hua, Hui
    Chen, Jiahong
    INTERNATIONAL JOURNAL ON SEMANTIC WEB AND INFORMATION SYSTEMS, 2024, 20 (01)