• español
  • English
  • français
  • Deutsch
  • português (Brasil)
  • italiano
  • Entre em contato
  • Deixe sua opinião
    • español
    • English
    • français
    • Deutsch
    • português (Brasil)
    • italiano
    • español
    • English
    • français
    • Deutsch
    • português (Brasil)
    • italiano
    JavaScript is disabled for your browser. Some features of this site may not work without it.
    Gredos. Repositorio documental de la Universidad de SalamancaUniversidad de Salamanca
    Consorcio BUCLE Recolector

    Navegar

    Todo o repositórioComunidades e ColeçõesPor data do documentoAutoresAssuntosTítulosEsta coleçãoPor data do documentoAutoresAssuntosTítulos

    Minha conta

    EntrarCadastro

    Estatísticas

    Ver as estatísticas de uso
    Estadísticas totales de uso y lectura

    ENLACES Y ACCESOS

    Derechos de autorPolíticasGuías de autoarchivoFAQAdhesión USAL a la Declaración de BerlínProtocolo de depósito, modificación y retirada de documentos y datosSolicitud de depósito, modificación y retirada de documentos y datos

    COMPARTIR

    Ver item 
    •   Página inicial
    • Repositório Científico
    • Publicaciones periódicas EUSAL
    • ADCAIJ: Advances in Distributed Computing and Artificial Intelligence Journal
    • ADCAIJ - 2021
    • ADCAIJ, Vol.10, n.3
    • Ver item
    •   Página inicial
    • Repositório Científico
    • Publicaciones periódicas EUSAL
    • ADCAIJ: Advances in Distributed Computing and Artificial Intelligence Journal
    • ADCAIJ - 2021
    • ADCAIJ, Vol.10, n.3
    • Ver item

    Compartir

    Exportar

    RISMendeleyRefworksZotero
    • edm
    • marc
    • xoai
    • qdc
    • ore
    • ese
    • dim
    • uketd_dc
    • oai_dc
    • etdms
    • rdf
    • mods
    • mets
    • didl
    • premis

    Citas

    Título
    Advance Approach for Detection of DNS Tunneling Attack from Network Packets Using Deep Learning Algorithms
    Autor(es)
    Sakarkar, Gopal
    Kolekar, Mahesh Kumar H
    Paithankar, Ketan
    Patil, Gaurav
    Dutta, Prateek
    Chaturvedi, Ruchi
    Kumar, Shivam
    Palabras clave
    Text Classification
    Machine Learning
    NLP
    LSTM
    1-D CNN
    RNN
    GRU
    DNS packet
    Deep Learning
    DNS Tunneling
    Wireshark
    dnscat2
    Fecha de publicación
    2021-10-05
    Editor
    Ediciones Universidad de Salamanca (España)
    Citación
    ADCAIJ: Advances in Distributed Computing and Artificial Intelligence Journal, 10 (2021)
    Resumen
    Domain Name System (DNS) is a protocol for converting numeric IP addresses of websites into a human-readable form. With the development of technology, to transfer information, a method like DNS tunneling is used which includes data encryption into DNS queries. The ability of the DNS tunneling method of transferring data attracts attackers to establish bidirectional communication with machines infected with malwares. This can lead to sending instructions in an obfuscated way or can lead to data exfiltration. Since firewalls and intrusion detection systems detect only specific types of tunneling, were as the Machine Learning Algorithms can analyze and predict based on previous data provided to it, it is being adopted by researchers to detect and predict the occurrence of DNS Tunneling. The identification of anomalies in Network packets can be done by using Natural Language Processing (NLP) technique. The experimental test accuracy showed that the feature extraction method in NLP for detecting DNS tunneling in network packets was found to be 98.42% on the generated Dataset. This paper makes a comparative study of 1 Dimensional Convolution Neural Network (1-D CNN), Simple Recurrent Neural Network (Simple RNN), Long Short-Term Memory (LSTM) algorithm, Gated Recurrent Unit (GRU) algorithm for detecting DNS Tunneling over the generated dataset. To detect this threat of DNS tunneling attack, good quality of the dataset is required. This paper also proposes the generation of a good quality dataset that contains network packets, by the recreation of DNS Tunneling attack using tool dnscat2.
    URI
    https://hdl.handle.net/10366/147246
    ISSN
    2255-2863
    Aparece en las colecciones
    • ADCAIJ, Vol.10, n.3 [8]
    Mostrar registro completo
    Arquivos deste item
    Nombre:
    Advance_Approach_for_Detection_of_DNS_Tu.pdf
    Tamaño:
    3.583Mb
    Formato:
    Adobe PDF
    Thumbnail
    Visualizar/Abrir
     
    Universidad de Salamanca
    AVISO LEGAL Y POLÍTICA DE PRIVACIDAD
    2024 © UNIVERSIDAD DE SALAMANCA
     
    Universidad de Salamanca
    AVISO LEGAL Y POLÍTICA DE PRIVACIDAD
    2024 © UNIVERSIDAD DE SALAMANCA