Affiliation:
1. 1 Tangshan Polytechnic College , Tangshan , Tangshan , Hebei , , China .
Abstract
Abstract
With the increasingly complex network architecture under the development of information technology, it is more and more difficult to recognize various network traffic. Based on the direction of machine learning for network traffic anomaly detection, this paper proposes a three-stage CNN-LSTM attention mechanism model for feature extraction of original traffic and a PCA-based improvement for spatial feature learning of CNN to construct its anomaly traffic detection model. Meanwhile, based on the abnormal traffic detection, with discriminative network and generative network as the main parts, we propose the cyber security threat intelligence prediction model based on the use of a domain adaptive model to realize the shared representation of source and target domains. In the experiment of the abnormal traffic detection model, the accuracy rate of this paper’s detection model is 93.56%, the check-all rate is 99.2%, the F1 value is 84.9%, and the Kappa value is 80.66%. The detection level in the face of DOS attacks is the highest, with 98.28% and 99.63% checking full rate and checking accuracy, respectively. In the experiments of the network security threat intelligence prediction model, the prediction model of this paper reduces the time consumed by about 72% on average compared to rule file matching in dealing with large-scale network traffic. In high-risk cybersecurity threat attack types, it has an average prediction accuracy of 88.83% and a recall rate of over 90%.
Reference23 articles.
1. Papadogiannaki, E., & Ioannidis, S. (2021). A survey on encrypted network traffic analysis applications, techniques, and countermeasures. ACM Computing Surveys (CSUR).
2. Pathak, Parth, H., Chuah, Chen-Nee, & Mohapatra, et al. (2017). Privacy-aware contextual localization using network traffic analysis. Computer Networks.
3. Yang, L. S. (2018). Botcapturer: detecting botnets based on two-layered analysis with graph anomaly detection and network traffic clustering. International Journal of Performability Engineering, 14(5).
4. Duan, L., Zhou, J., Wu, Y., & Xu, W. (2022). A novel and highly efficient botnet detection algorithm based on network traffic analysis of smart systems:. International Journal of Distributed Sensor Networks, 18(3), 182459-182476.
5. Zhu, Y., & Du, Z. (2021). Research on the key technologies of network security-oriented situation prediction. Scientific Programming.