Matches in SemOpenAlex for { <https://semopenalex.org/work/W3159937868> ?p ?o ?g. }
Showing items 1 to 92 of
92
with 100 items per page.
- W3159937868 endingPage "102823" @default.
- W3159937868 startingPage "102823" @default.
- W3159937868 abstract "Currently, encryption (such as the Transport Layer Security protocol) is used by increasingly more network applications to protect their security and privacy, while it also benefits network attackers who can encrypt their traffic to evade detection. The detection of malicious encrypted traffic is becoming a critical task for cyber security. To accomplish this task, researchers have proposed several enlightening methods, including decryption followed by deep packet inspection (DPI), direct DPI on ciphertext and identification by machine learning algorithms. However, due to privacy violations or performance limitations, the state-of-the-art is far from satisfactory. In this paper, we propose a novel framework and system called ME-Box (Machine learning and Evidence verification) for reliable detection of malicious encrypted traffic. ME-Box has middleboxes deployed in the network and agents installed on the sending hosts. Middleboxes first evaluate the trust degrees of encrypted flows by machine learning methods. If some flows are classified as suspicious, then middleboxes provide evidence of the evaluation results and request the corresponding session-keys from the agents. The agents verify the evidence, and if it is convincing, respond with the correct session-keys. With the session-keys, middleboxes finally decrypt the suspected encrypted flows and perform conventional DPI using intrusion signatures. We implement a prototype system of ME-Box and test it with real malware traffic. The experimental results show that ME-Box requires no modification of current cryptographic protocols and keeps end-users’ privacy well, and its performance is practically deployable." @default.
- W3159937868 created "2021-05-10" @default.
- W3159937868 creator A5043438182 @default.
- W3159937868 creator A5073978017 @default.
- W3159937868 creator A5091060533 @default.
- W3159937868 date "2021-06-01" @default.
- W3159937868 modified "2023-09-27" @default.
- W3159937868 title "ME-Box: A reliable method to detect malicious encrypted traffic" @default.
- W3159937868 cites W15277881 @default.
- W3159937868 cites W2106217851 @default.
- W3159937868 cites W2108759094 @default.
- W3159937868 cites W2324374191 @default.
- W3159937868 cites W2342408547 @default.
- W3159937868 cites W2474861573 @default.
- W3159937868 cites W2544710688 @default.
- W3159937868 cites W2609225916 @default.
- W3159937868 cites W2870670057 @default.
- W3159937868 cites W2912386632 @default.
- W3159937868 cites W2912711574 @default.
- W3159937868 cites W2963065250 @default.
- W3159937868 cites W2981318525 @default.
- W3159937868 cites W3027300110 @default.
- W3159937868 cites W3029652632 @default.
- W3159937868 cites W4233865259 @default.
- W3159937868 doi "https://doi.org/10.1016/j.jisa.2021.102823" @default.
- W3159937868 hasPublicationYear "2021" @default.
- W3159937868 type Work @default.
- W3159937868 sameAs 3159937868 @default.
- W3159937868 citedByCount "4" @default.
- W3159937868 countsByYear W31599378682022 @default.
- W3159937868 countsByYear W31599378682023 @default.
- W3159937868 crossrefType "journal-article" @default.
- W3159937868 hasAuthorship W3159937868A5043438182 @default.
- W3159937868 hasAuthorship W3159937868A5073978017 @default.
- W3159937868 hasAuthorship W3159937868A5091060533 @default.
- W3159937868 hasConcept C136764020 @default.
- W3159937868 hasConcept C142724271 @default.
- W3159937868 hasConcept C148176105 @default.
- W3159937868 hasConcept C148730421 @default.
- W3159937868 hasConcept C158379750 @default.
- W3159937868 hasConcept C178489894 @default.
- W3159937868 hasConcept C204679922 @default.
- W3159937868 hasConcept C204787440 @default.
- W3159937868 hasConcept C2779182362 @default.
- W3159937868 hasConcept C2780385302 @default.
- W3159937868 hasConcept C31258907 @default.
- W3159937868 hasConcept C33884865 @default.
- W3159937868 hasConcept C35525427 @default.
- W3159937868 hasConcept C38652104 @default.
- W3159937868 hasConcept C41008148 @default.
- W3159937868 hasConcept C541664917 @default.
- W3159937868 hasConcept C71924100 @default.
- W3159937868 hasConceptScore W3159937868C136764020 @default.
- W3159937868 hasConceptScore W3159937868C142724271 @default.
- W3159937868 hasConceptScore W3159937868C148176105 @default.
- W3159937868 hasConceptScore W3159937868C148730421 @default.
- W3159937868 hasConceptScore W3159937868C158379750 @default.
- W3159937868 hasConceptScore W3159937868C178489894 @default.
- W3159937868 hasConceptScore W3159937868C204679922 @default.
- W3159937868 hasConceptScore W3159937868C204787440 @default.
- W3159937868 hasConceptScore W3159937868C2779182362 @default.
- W3159937868 hasConceptScore W3159937868C2780385302 @default.
- W3159937868 hasConceptScore W3159937868C31258907 @default.
- W3159937868 hasConceptScore W3159937868C33884865 @default.
- W3159937868 hasConceptScore W3159937868C35525427 @default.
- W3159937868 hasConceptScore W3159937868C38652104 @default.
- W3159937868 hasConceptScore W3159937868C41008148 @default.
- W3159937868 hasConceptScore W3159937868C541664917 @default.
- W3159937868 hasConceptScore W3159937868C71924100 @default.
- W3159937868 hasFunder F4320312290 @default.
- W3159937868 hasFunder F4320321001 @default.
- W3159937868 hasFunder F4320335774 @default.
- W3159937868 hasLocation W31599378681 @default.
- W3159937868 hasOpenAccess W3159937868 @default.
- W3159937868 hasPrimaryLocation W31599378681 @default.
- W3159937868 hasRelatedWork W126120020 @default.
- W3159937868 hasRelatedWork W1991475938 @default.
- W3159937868 hasRelatedWork W2148742293 @default.
- W3159937868 hasRelatedWork W2161759836 @default.
- W3159937868 hasRelatedWork W2352858694 @default.
- W3159937868 hasRelatedWork W2945481194 @default.
- W3159937868 hasRelatedWork W3011253173 @default.
- W3159937868 hasRelatedWork W3159937868 @default.
- W3159937868 hasRelatedWork W4297098500 @default.
- W3159937868 hasRelatedWork W4312319924 @default.
- W3159937868 hasVolume "59" @default.
- W3159937868 isParatext "false" @default.
- W3159937868 isRetracted "false" @default.
- W3159937868 magId "3159937868" @default.
- W3159937868 workType "article" @default.