Integrating Non-encrypted and Encrypted Features for Enhanced Detection of Encrypted Network Attacks
摘要
The adoption of network encryption traffic primarily aims to bolster network security; however, this practice poses notable challenges as malicious actors exploit encryption throughout different stages of the malware infection process. In response to this challenge, the present study aims to fill this gap by delving into the complex relationship between encrypted and non-encrypted features. The objective is to improve the accuracy of network intrusion detection systems, recognizing the nuanced nature of network intrusions. The research underscores the importance of a comprehensive understanding of both encrypted and non-encrypted activities, emphasizing that such insights are crucial for the development of more robust and effective detection mechanisms in the evolving landscape of cybersecurity.