All

What are you looking for?

All
Projects
Results
Organizations

Quick search

  • Projects supported by TA ČR
  • Excellent projects
  • Projects with the highest public support
  • Current projects

Smart search

  • That is how I find a specific +word
  • That is how I leave the -word out of the results
  • “That is how I can find the whole phrase”

Detection of HTTPS Brute-Force Attacks with Packet-Level Feature Set

The result's identifiers

  • Result code in IS VaVaI

    <a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F68407700%3A21240%2F21%3A00346587" target="_blank" >RIV/68407700:21240/21:00346587 - isvavai.cz</a>

  • Result on the web

    <a href="https://doi.org/10.1109/CCWC51732.2021.9375998" target="_blank" >https://doi.org/10.1109/CCWC51732.2021.9375998</a>

  • DOI - Digital Object Identifier

    <a href="http://dx.doi.org/10.1109/CCWC51732.2021.9375998" target="_blank" >10.1109/CCWC51732.2021.9375998</a>

Alternative languages

  • Result language

    angličtina

  • Original language name

    Detection of HTTPS Brute-Force Attacks with Packet-Level Feature Set

  • Original language description

    This paper presents a novel approach to detect brute-force attacks against web services in high-speed networks. The prevalence of brute-force attacks is so high that service providers, such as ISPs or web-hosting providers, cannot depend on their customers' host-based defenses. Moreover, the rising usage of encryption makes it more difficult to detect attacks on the network level. In our research, we created a dataset, which consists of 1.8 million extended IP flows from a backbone network combined with IP flows generated with three popular open-source brute-forcing tools. We identified a distinctive packet-level feature set and trained a machine-learning classifier with a false positive rate of 10^-4 and a true positive rate (the ratio of discovered attacks) of 0.938. The achieved results surpass the state-of-the-art solutions and show that the developed HTTPS brute-force detection algorithm is viable for production deployment.

  • Czech name

  • Czech description

Classification

  • Type

    D - Article in proceedings

  • CEP classification

  • OECD FORD branch

    10201 - Computer sciences, information science, bioinformathics (hardware development to be 2.2, social aspect to be 5.8)

Result continuities

  • Project

  • Continuities

    S - Specificky vyzkum na vysokych skolach

Others

  • Publication year

    2021

  • Confidentiality

    S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů

Data specific for result type

  • Article name in the collection

    11th Annual Computing and Communication Workshop and Conference (CCWC2021)

  • ISBN

    978-0-7381-4394-1

  • ISSN

  • e-ISSN

  • Number of pages

    9

  • Pages from-to

    0115-0123

  • Publisher name

    IEEE

  • Place of publication

    Piscataway (New Jersey)

  • Event location

    Las Vegas

  • Event date

    Jan 27, 2021

  • Type of event by nationality

    WRD - Celosvětová akce

  • UT code for WoS article

    000668575500019