Network Traffic Flow Separation and Control Through a Hybrid ICA-Fuzzy Adaptive Algorithm

Author(s):  
Flávio Henrique Teles Vieira ◽  
Lígia Maria Carvalho Sousa ◽  
George E. Bozinis ◽  
Wesley F. de Miranda ◽  
Charles Casimiro Cavalcante
2021 ◽  
Vol 2 (2) ◽  
Author(s):  
Kate Highnam ◽  
Domenic Puzio ◽  
Song Luo ◽  
Nicholas R. Jennings

AbstractBotnets and malware continue to avoid detection by static rule engines when using domain generation algorithms (DGAs) for callouts to unique, dynamically generated web addresses. Common DGA detection techniques fail to reliably detect DGA variants that combine random dictionary words to create domain names that closely mirror legitimate domains. To combat this, we created a novel hybrid neural network, Bilbo the “bagging” model, that analyses domains and scores the likelihood they are generated by such algorithms and therefore are potentially malicious. Bilbo is the first parallel usage of a convolutional neural network (CNN) and a long short-term memory (LSTM) network for DGA detection. Our unique architecture is found to be the most consistent in performance in terms of AUC, $$F_1$$ F 1 score, and accuracy when generalising across different dictionary DGA classification tasks compared to current state-of-the-art deep learning architectures. We validate using reverse-engineered dictionary DGA domains and detail our real-time implementation strategy for scoring real-world network logs within a large enterprise. In 4 h of actual network traffic, the model discovered at least five potential command-and-control networks that commercial vendor tools did not flag.


IEEE Network ◽  
2018 ◽  
Vol 32 (6) ◽  
pp. 22-27 ◽  
Author(s):  
Peng Li ◽  
Zhikui Chen ◽  
Laurence T. Yang ◽  
Jing Gao ◽  
Qingchen Zhang ◽  
...  

2015 ◽  
Vol 15 (5) ◽  
pp. 5-16
Author(s):  
H. Abouaïssa ◽  
H. Majid

Abstract The studies presented in this paper deal with traffic control in case of missing data and/or when the loop detectors are faulty. We show that the traffic state estimation plays an important role in traffic prediction and control. Two approaches are presented for the estimation of the main traffic variables (traffic density and mean speed). The state constructors obtained are then used for traffic flow control. Several numerical simulations show very promising results for both traffic state estimation and control.


Sign in / Sign up

Export Citation Format

Share Document