Skip to Main Content (Press Enter)

Logo CNR
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze

UNI-FIND
Logo CNR

|

UNI-FIND

cnr.it
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze
  1. Pubblicazioni

Learning autoencoder ensembles for detecting malware hidden communications in IoT ecosystems

Articolo
Data di Pubblicazione:
2023
Abstract:
Modern IoT ecosystems are the preferred target of threat actors wanting to incorporate resource-constrained devices within a botnet or leak sensitive information. A major research effort is then devoted to create countermeasures for mitigating attacks, for instance, hardware-level verification mechanisms or effective network intrusion detection frameworks. Unfortunately, advanced malware is often endowed with the ability of cloaking communications within network traffic, e.g., to orchestrate compromised IoT nodes or exfiltrate data without being noticed. Therefore, this paper showcases how different autoencoder-based architectures can spot the presence of malicious communications hidden in conversations, especially in the TTL of IPv4 traffic. To conduct tests, this work considers IoT traffic traces gathered in a real setting and the presence of an attacker deploying two hiding schemes (i.e., naive and "elusive" approaches). Collected results showcase the effectiveness of our method as well as the feasibility of deploying autoencoders in production-quality IoT settings.
Tipologia CRIS:
01.01 Articolo in rivista
Keywords:
Deep autoencoder; Ensemble Method; Covert Channel; Intelligent cyber attack detection system
Elenco autori:
Liguori, Angelica; Caviglione, Luca; Guarascio, Massimo; Cassavia, Nunziato; Zuppelli, Marco
Autori di Ateneo:
CAVIGLIONE LUCA
GUARASCIO MASSIMO
ZUPPELLI MARCO
Link alla scheda completa:
https://iris.cnr.it/handle/20.500.14243/429977
Pubblicato in:
JOURNAL OF INTELLIGENT INFORMATION SYSTEMS
Journal
  • Dati Generali

Dati Generali

URL

https://link.springer.com/article/10.1007/s10844-023-00819-8#citeas
  • Utilizzo dei cookie

Realizzato con VIVO | Designed by Cineca | 26.5.0.0 | Sorgente dati: PREPROD (Ribaltamento disabilitato)