Enhancing DeCrypto: Finding Cryptocurrency Miners Based on Periodic Behavior
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F63839172%3A_____%2F23%3A10133612" target="_blank" >RIV/63839172:_____/23:10133612 - isvavai.cz</a>
Alternative codes found
RIV/68407700:21240/23:00369773
Result on the web
<a href="https://ieeexplore.ieee.org/document/10327904" target="_blank" >https://ieeexplore.ieee.org/document/10327904</a>
DOI - Digital Object Identifier
<a href="http://dx.doi.org/10.23919/CNSM59352.2023.10327904" target="_blank" >10.23919/CNSM59352.2023.10327904</a>
Alternative languages
Result language
angličtina
Original language name
Enhancing DeCrypto: Finding Cryptocurrency Miners Based on Periodic Behavior
Original language description
While the popularity of cryptocurrencies and the whole industry's value are rising, the number of threat actors who use illegal "coin miner mal ware" is increasing as well. The threat actors commonly use computational resources of companies, research and educational institutions, or end users. In this paper, we analyzed the long-term periodic behavior of the cryptocurrency miners communicating in computer networks. We propose a novel method for cryptominers detection using specially designed periodicity features. The detection algorithm is based on the mathematical detection of periodic Flow time series (FTS) and feature mining. Altogether with the Machine Learning technique, the resulting system achieves high-precision performance. Furthermore, our approach enhances a flow-based cryptominers detection system DeCrypto to further improve its reliability and feasibility for high-speed networks.
Czech name
—
Czech description
—
Classification
Type
D - Article in proceedings
CEP classification
—
OECD FORD branch
10201 - Computer sciences, information science, bioinformathics (hardware development to be 2.2, social aspect to be 5.8)
Result continuities
Project
<a href="/en/project/VJ02010024" target="_blank" >VJ02010024: Flow-based Encrypted Traffic Analysis</a><br>
Continuities
P - Projekt vyzkumu a vyvoje financovany z verejnych zdroju (s odkazem do CEP)
Others
Publication year
2023
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Article name in the collection
2023 19th International Conference on Network and Service Management (CNSM)
ISBN
978-3-903176-59-1
ISSN
2165-963X
e-ISSN
—
Number of pages
7
Pages from-to
—
Publisher name
IEEE
Place of publication
Piscataway , USA
Event location
Niagara Falls, Kanada
Event date
Oct 30, 2023
Type of event by nationality
WRD - Celosvětová akce
UT code for WoS article
—