期刊文献+

数据挖掘在恶意网页动态检测中的应用研究

RESEARCH ON APPLYING DATA MINING IN DYNAMIC MALICIOUS WEB PAGE DETECTION
下载PDF
导出
摘要 设计并实现一种恶意网页动态检测模型。模型通过对Capture-HPC蜜罐日志进行数据挖掘的方法,解决了蜜罐系统检测误警率过高的问题。通过将蜜罐日志转换成操作序列和挖掘序列,可以有效地通过聚类分析提取属性特征信息,并优化作为判别依据的黑白名单。通过实验验证了模型设计的合理性,以及模型降低误警率的有效性。 In this paper,a dynamic malicious web page detection model is designed and implemented,and based on mining the data of Capture-HPC honeypot logs,the high false-alarm rate problem in honeypot system has been solved.The system converts honeypot logs into operation and data mining sequences,from which the attribution feature information can be extracted effectively by cluster analysis,and be the white and black list of differentiation basis after optimisation.In the paper we validate through an experiment the rationality of the model design and the effectiveness of model in false-alarm reduction.
出处 《计算机应用与软件》 CSCD 北大核心 2013年第5期1-3,共3页 Computer Applications and Software
基金 国家自然科学基金项目(61171173)
关键词 恶意网页 蜜罐日志 数据挖掘 误警率 Malicious web page Honeypot log Data mining False-alarm rate
  • 相关文献

参考文献7

  • 1S Frei, T Duebendorfer, G Ollman, et al. Understanding the web browser threat: Examination of vulnerable online web browser popula- tions and the "insecurity iceberg" [ C ]. 2008.
  • 2C Seifert, R Steenson, T Holz, et al. Know Your Enemy: Malicious Web Servers [ C ]. The Honeynet Project, 2007.
  • 3Y Alosefer, 0 Rana. Clustering Client Honeypot Data to Support Mal- ware Analysis[ C ]. KES,2010.
  • 4Y Alosefer, O Rana. Predicting Client-side Attacks via Behaviour A- nalysis using Honeypot Data[ C ]. NWeSP, IEEE,2011.
  • 5Capture-HPC [OL]. 2009. https ://projects. honeynet, org/capture-hpc.
  • 6J Witten, F Frank. Data Mining:Practical Machine Learning Tools and Techniques[ M]. 2nd ed. Morgan Kaufmann, San Francisco, 2005,.
  • 7Yung-Tsung Hou, Yimeng Chang, Tsuhan Chen, et al. Malicious web content detection by machine learning [ C ]//Expert Systems with Ap- plications, 2010.

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部