PUMD: a PU learning-based malicious domain detection framework

被引:0
|
作者
Zhaoshan Fan
Qing Wang
Haoran Jiao
Junrong Liu
Zelin Cui
Song Liu
Yuling Liu
机构
[1] Chinese Academy of Sciences,Institute of Information Engineering
[2] University of Chinese Academy of Sciences,School of Cyber Security
来源
关键词
Malicious domain detection; Insufficient credible label information; Class imbalance; Incompact distribution; PU learning;
D O I
暂无
中图分类号
学科分类号
摘要
Domain name system (DNS), as one of the most critical internet infrastructure, has been abused by various cyber attacks. Current malicious domain detection capabilities are limited by insufficient credible label information, severe class imbalance, and incompact distribution of domain samples in different malicious activities. This paper proposes a malicious domain detection framework named PUMD, which innovatively introduces Positive and Unlabeled (PU) learning solution to solve the problem of insufficient label information, adopts customized sample weight to improve the impact of class imbalance, and effectively constructs evidence features based on resource overlapping to reduce the intra-class distance of malicious samples. Besides, a feature selection strategy based on permutation importance and binning is proposed to screen the most informative detection features. Finally, we conduct experiments on the open source real DNS traffic dataset provided by QI-ANXIN Technology Group to evaluate the PUMD framework’s ability to capture potential command and control (C&C) domains for malicious activities. The experimental results prove that PUMD can achieve the best detection performance under different label frequencies and class imbalance ratios.
引用
收藏
相关论文
共 50 条
  • [1] PUMD: a PU learning-based malicious domain detection framework
    Fan, Zhaoshan
    Wang, Qing
    Jiao, Haoran
    Liu, Junrong
    Cui, Zelin
    Liu, Song
    Liu, Yuling
    CYBERSECURITY, 2022, 5 (01)
  • [2] MalFinder: An Ensemble Learning-based Framework For Malicious Traffic Detection
    Rong, Candong
    Gou, Gaopeng
    Cui, Mingxin
    Xiong, Gang
    Li, Zhen
    Guo, Li
    2020 IEEE SYMPOSIUM ON COMPUTERS AND COMMUNICATIONS (ISCC), 2020, : 588 - 594
  • [3] SandboxNet: A Learning-Based Malicious Application Detection Framework in SDN Networks
    Chi, Po-Wen
    Zheng, Yu
    Chang, Wei-Yang
    Wang, Ming-Hung
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2022, 38 (06) : 1189 - 1211
  • [4] PU-Detector: A PU Learning-based Framework for Real Money Trading Detection in MMORPG
    Wang, Yilin
    Zhao, Sha
    Zhao, Shiwei
    Wu, Runze
    Xu, Yuhong
    Tao, Jianrong
    Lv, Tangjie
    Li, Shijian
    Hu, Zhipeng
    Pan, Gang
    ACM TRANSACTIONS ON KNOWLEDGE DISCOVERY FROM DATA, 2024, 18 (04)
  • [5] Machine Learning-Based Malicious Application Detection of Android
    Wei, Linfeng
    Luo, Weiqi
    Weng, Jian
    Zhong, Yanjun
    zhang, Xiaoqian
    Yan, Zheng
    IEEE ACCESS, 2017, 5 : 25591 - 25601
  • [6] A machine learning-based malicious bot detection framework for trend-centric twitter stream
    Gera, Suruchi
    Sinha, Adwitiya
    JOURNAL OF DISCRETE MATHEMATICAL SCIENCES & CRYPTOGRAPHY, 2021, 24 (05): : 1337 - 1348
  • [7] POSTER: A PU Learning based System for Potential Malicious URL Detection
    Zhang, Ya-Lin
    Li, Longfei
    Zhou, Jun
    Li, Xiaolong
    Liu, Yujiang
    Zhang, Yuanchao
    Zhou, Zhi-Hua
    CCS'17: PROCEEDINGS OF THE 2017 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2017, : 2599 - 2601
  • [8] An Effective Malicious Domain Detection Framework
    Cui J.
    Shi L.
    Li J.
    Liu Z.-H.
    Yao Y.-G.
    Beijing Ligong Daxue Xuebao/Transaction of Beijing Institute of Technology, 2019, 39 (01): : 64 - 67
  • [9] Malicious Domain Name Detection Based on Extreme Machine Learning
    Shi, Yong
    Chen, Gong
    Li, Juntao
    NEURAL PROCESSING LETTERS, 2018, 48 (03) : 1347 - 1357
  • [10] A Malicious Domain Detection Model Based on Improved Deep Learning
    Huang, XiangDong
    Li, Hao
    Liu, Jiajia
    Liu, FengChun
    Wang, Jian
    Xie, BaoShan
    Chen, BaoPing
    Zhang, Qi
    Xue, Tao
    COMPUTATIONAL INTELLIGENCE AND NEUROSCIENCE, 2022, 2022