• KSII Transactions on Internet and Information Systems
    Monthly Online Journal (eISSN: 1976-7277)

Flow based Sequential Grouping System for Malicious Traffic Detection


Abstract

With the rapid development of science and technology, several high-performance networks have emerged with various new applications. Consequently, financially or socially motivated attacks on specific networks have also steadily become more complicated and sophisticated. To reduce the damage caused by such attacks, administration of network traffic flow in real-time and precise analysis of past attack traffic have become imperative. Although various traffic analysis methods have been studied recently, they continue to suffer from performance limitations and are generally too complicated to apply in existing systems. To address this problem, we propose a method to calculate the correlation between the malicious and normal flows and classify attack traffics based on the corresponding correlation values. In order to evaluate the performance of the proposed method, we conducted several experiments using examples of real malicious traffic and normal traffic. The evaluation was performed with respect to three metrics: recall, precision, and f-measure. The experimental results verified high performance of the proposed method with respect to first two metrics.


Statistics

Show / Hide Statistics

Statistics (Cumulative Counts from December 1st, 2015)
Multiple requests among the same browser session are counted as one view.
If you mouse over a chart, the values of data points will be shown.


Cite this article

[IEEE Style]
J. Park, U. Baek, M. Lee, Y. Goo, S. Lee, M. Kim, "Flow based Sequential Grouping System for Malicious Traffic Detection," KSII Transactions on Internet and Information Systems, vol. 15, no. 10, pp. 3771-3792, 2021. DOI: 10.3837/tiis.2021.10.016.

[ACM Style]
Jee-Tae Park, Ui-Jun Baek, Min-Seong Lee, Young-Hoon Goo, Sung-Ho Lee, and Myung-Sup Kim. 2021. Flow based Sequential Grouping System for Malicious Traffic Detection. KSII Transactions on Internet and Information Systems, 15, 10, (2021), 3771-3792. DOI: 10.3837/tiis.2021.10.016.

[BibTeX Style]
@article{tiis:25024, title="Flow based Sequential Grouping System for Malicious Traffic Detection", author="Jee-Tae Park and Ui-Jun Baek and Min-Seong Lee and Young-Hoon Goo and Sung-Ho Lee and Myung-Sup Kim and ", journal="KSII Transactions on Internet and Information Systems", DOI={10.3837/tiis.2021.10.016}, volume={15}, number={10}, year="2021", month={October}, pages={3771-3792}}