paper-with-me

홈 › Papers

Joint Detection of Malicious Domains and Infected Clients

2019-06-21 · Paul Prasse, Rene Knaebel, Lukas Machlica, Tomas Pevny, Tobias Scheffer

Detection of malware-infected computers and detection of malicious web domains based on their encrypted HTTPS traffic are challenging problems, because only addresses, timestamps, and data volumes are observable. The detection problems are coupled, because infected clients tend to interact with malicious domains. Traffic data can be collected at a large scale, and antivirus tools can be used to identify infected clients in retrospect. Domains, by contrast, have to be labeled individually after forensic analysis. We explore transfer learning based on sluice networks; this allows the detection models to bootstrap each other. In a large-scale experimental study, we find that the model outperforms known reference models and detects previously unknown malware, previously unknown malware families, and previously unknown malicious domains.

📄 PDF Abstract BibTeX arXiv:1906.09084

Code (0)

등록된 구현이 없습니다.

Tasks

Transfer Learning

Similar Papers 제목 키워드 기반

A Client-level Assessment of Collaborative Backdoor Poisoning in Non-IID Federated Learning

2025-04-17 · Phung Lai, Guanxiong Liu, Hai Phan, Issa Khalil 외

Federated learning (FL) enables collaborative model training using decentralized private data from multiple clients. While FL has shown robustness against poisoning attacks with basic defenses, our research reveals new v…

Federated LearningModel Poisoning

Shielding Collaborative Learning: Mitigating Poisoning Attacks through Client-Side Detection

2019-10-29 · Lingchen Zhao, Shengshan Hu, Qian Wang, Jianlin Jiang 외

Collaborative learning allows multiple clients to train a joint model without sharing their data with each other. Each client performs training locally and then submits the model updates to a central server for aggregati…

HinDom: A Robust Malicious Domain Detection System based on Heterogeneous Information Network with Transductive Classification

2019-09-04 · Xiaoqing Sun, Mingkai Tong, Jiahai Yang

Domain name system (DNS) is a crucial part of the Internet, yet has been widely exploited by cyber attackers. Apart from making static methods like blacklists or sinkholes infeasible, some weasel attackers can even bypas…

General Classification

Toward Malicious Clients Detection in Federated Learning

2025-05-14 · Zhihao Dou, Jiaqi Wang, Wei Sun, Zhuqing Liu 외

Federated learning (FL) enables multiple clients to collaboratively train a global machine learning model without sharing their raw data. However, the decentralized nature of FL introduces vulnerabilities, particularly t…

Federated Learning

CELEST: Federated Learning for Globally Coordinated Threat Detection

2022-05-23 · Talha Ongun, Simona Boboila, Alina Oprea, Tina Eliassi-Rad 외

The cyber-threat landscape has evolved tremendously in recent years, with new threat variants emerging daily, and large-scale coordinated campaigns becoming more prevalent. In this study, we propose CELEST (CollaborativE…

Active LearningFederated Learning