DNS tunneling detection through statistical fingerprints of protocol messages and machine learning.
Maurizio AielloMaurizio MongelliGianluca PapaleoPublished in: Int. J. Commun. Syst. (2015)
Keyphrases
- machine learning
- statistical methods
- detection method
- lightweight
- pattern recognition
- object detection
- automatic detection
- machine learning methods
- computer science
- active learning
- knowledge representation
- knowledge acquisition
- statistical analysis
- anomaly detection
- detection algorithm
- messages exchanged
- false positives
- feature selection
- computer vision
- cryptographic protocols
- authentication protocol
- formal analysis
- message delivery
- explanation based learning
- model selection
- text classification
- supervised learning
- decision trees
- learning algorithm