Enabling Malware Detection with Machine Learning on Programmable Switch

Hsin Fu Chang*, Michael I.C. Wang*, Chi Hsiang Hung, Charles H.P. Wen*

*此作品的通信作者

研究成果: Conference contribution同行評審

5 引文 斯高帕斯(Scopus)

摘要

Malware detection is an important issue for network security, especially for the Internet of Things (IoT) network. Traditional network intrusion detection system (NIDS), running on external host servers, are not scalable for ever-increasing IoT traffic and waste time on transmitting data back and forth. Here, we propose a novel architecture called on-switch malware detector that utilizes the programmable switch and the machine-learning technique to achieve better performance on detecting malicious flows in the network. The on-switch malware detector mainly consists of four components: (1) packet forwarder, (2) feature extractor, (3) flow director, and (4) neural-network detector. According to the experimental results, the on-switch malware detection has a 99.57% shorter response time than a conventional signature-based NIDS; meanwhile its processing capacity increases by 800 times. As a result, the on-switch malware detector efficiently overcomes the shortcomings of conventional NIDSs, making it a better fit for the IoT network.

原文English
主出版物標題Proceedings of the IEEE/IFIP Network Operations and Management Symposium 2022
主出版物子標題Network and Service Management in the Era of Cloudification, Softwarization and Artificial Intelligence, NOMS 2022
編輯Pal Varga, Lisandro Zambenedetti Granville, Alex Galis, Istvan Godor, Noura Limam, Prosper Chemouil, Jerome Francois, Marc-Oliver Pahl
發行者Institute of Electrical and Electronics Engineers Inc.
ISBN(電子)9781665406017
DOIs
出版狀態Published - 2022
事件2022 IEEE/IFIP Network Operations and Management Symposium, NOMS 2022 - Budapest, 匈牙利
持續時間: 25 4月 202229 4月 2022

出版系列

名字Proceedings of the IEEE/IFIP Network Operations and Management Symposium 2022: Network and Service Management in the Era of Cloudification, Softwarization and Artificial Intelligence, NOMS 2022

Conference

Conference2022 IEEE/IFIP Network Operations and Management Symposium, NOMS 2022
國家/地區匈牙利
城市Budapest
期間25/04/2229/04/22

指紋

深入研究「Enabling Malware Detection with Machine Learning on Programmable Switch」主題。共同形成了獨特的指紋。

引用此