Marked Neural Temporal Point Process for Network Packet Characterization

Guardado en:
Detalles Bibliográficos
Publicado en:ProQuest Dissertations and Theses (2025)
Autor principal: Seo, Eunjung
Publicado:
ProQuest Dissertations & Theses
Materias:
Acceso en línea:Citation/Abstract
Full Text - PDF
Etiquetas: Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
Descripción
Resumen:With the advancement of digital technologies, cyberattacks have become increasingly sophisticated, posing serious threats to personal privacy, national security, and organizational infrastructure. As modern cyber threats grow in complexity and intelligence, traditional network security approaches are proving insufficient. Existing detection methods often rely on complete connection information, making it difficult to identify attacks in time, or depend on packet payload inspection, which is limited to unencrypted traffic and raises privacy concerns.To address these limitations, this study proposes a novel multi-class classification approach for cyberattack detection by introducing a Marked Neural Temporal Point Process (MNTPP) model that integrates deep learning techniques with Temporal Point Process (TPP) theory. Unlike conventional methods, the proposed model characterizes network flows by analyzing only inter-packet arrival time and packet sizes, enabling practical and efficient early detection with minimal packet information.The MNTPP model captures temporal dependencies and patterns through inter-packet arrival time and leverages packet size as a mark to provide additional information for flow characterization. Experiments on real-world network traffic traces demonstrate its effectiveness in early attack detection, outperforming advanced deep sequence models such as bidirectional LSTM and sequence-to-sequence.
ISBN:9798270224332
Fuente:ProQuest Dissertations & Theses Global