HSTF-Model: an HTTP-based Trojan Detection Model via the Hierarchical Spatio-Temporal Features of Traffics

09/07/2023
by   Jiang Xie, et al.
0

HTTP-based Trojan is extremely threatening, and it is difficult to be effectively detected because of its concealment and confusion. Previous detection methods usually are with poor generalization ability due to outdated datasets and reliance on manual feature extraction, which makes these methods always perform well under their private dataset, but poorly or even fail to work in real network environment. In this paper, we propose an HTTP-based Trojan detection model via the Hierarchical Spatio-Temporal Features of traffics (HSTF-Model) based on the formalized description of traffic spatio-temporal behavior from both packet level and flow level. In this model, we employ Convolutional Neural Network (CNN) to extract spatial information and Long Short-Term Memory (LSTM) to extract temporal information. In addition, we present a dataset consisting of Benign and Trojan HTTP Traffic (BTHT-2018). Experimental results show that our model can guarantee high accuracy (the F1 of 98.62 model has a huge advantage over other related methods in generalization ability. HSTF-Model trained with BTHT-2018 can reach the F1 of 93.51 public dataset ISCX-2012, which is 20+ learning methods.

READ FULL TEXT
research
09/07/2023

Detecting unknown HTTP-based malicious communication behavior via generated adversarial flows and hierarchical traffic features

Malicious communication behavior is the network communication behavior g...
research
09/06/2018

Travel Speed Prediction with a Hierarchical Convolutional Neural Network and Long Short-Term Memory Model Framework

Advanced travel information and warning, if provided accurately, can hel...
research
08/25/2022

Spatio-Temporal Representation Learning Enhanced Source Cell-phone Recognition from Speech Recordings

The existing source cell-phone recognition method lacks the long-term fe...
research
09/03/2023

A method based on hierarchical spatiotemporal features for trojan traffic detection

Trojans are one of the most threatening network attacks currently. HTTP-...
research
08/11/2023

Phased Deep Spatio-temporal Learning for Highway Traffic Volume Prediction

Inter-city highway transportation is significant for citizens' modern ur...
research
04/21/2020

STDPG: A Spatio-Temporal Deterministic Policy Gradient Agent for Dynamic Routing in SDN

Dynamic routing in software-defined networking (SDN) can be viewed as a ...
research
04/15/2019

A Realistic Dataset and Baseline Temporal Model for Early Drowsiness Detection

Drowsiness can put lives of many drivers and workers in danger. It is im...

Please sign up or login with your details

Forgot password? Click here to reset