Journal of Engineering and Science Application
Vol. 1 No. 2 (2024): October

A Robust Hybrid Approach for Malware Detection: Leveraging CNN and LSTM for Encrypted Traffic Analysis

Priyatno, Arif Mudi (Unknown)
Ningsih, Yunia (Unknown)
Vandika, Arnes Yuli (Unknown)
Muhammadong, Muhammadong (Unknown)



Article Info

Publish Date
29 Oct 2024

Abstract

The rapid growth in Internet usage and advancements in network technologies have escalated the risk of network attacks. As the adoption of encryption protocols increases, so does the difficulty in identifying malware within encrypted traffic. Malware represents a significant danger in cyberspace, as it compromises personal data and harms computer systems. Network attacks involve unauthorized access to networks, often aiming to disrupt or damage them, with potentially severe consequences. To counter these threats, researchers, developers, and security experts are constantly innovating new malware detection techniques. Recently, deep learning has gained traction in network security and intrusion detection systems (IDSs), with models such as Convolutional Neural Networks (CNN) and Long Short-Term Memory (LSTM) showing promise in detecting malicious traffic. Despite these advancements, extracting relevant features from diverse malware types remains a challenge. Current solutions demand substantial computational resources and are often inefficient for large datasets. Additionally, existing image-based feature extraction methods consume significant resources. This study tackles these issues by employing a 1D CNN alongside LSTM for the detection and classification of encrypted malicious traffic. Using the Malware Analysis benchmark dataset, which consists of 42,797 malware and 1,079 goodware API call sequences, the proposed model achieved an accuracy of 99.2%, surpassing other state-of-the-art models

Copyrights © 2024






Journal Info

Abbrev

jesa

Publisher

Subject

Aerospace Engineering Automotive Engineering Chemical Engineering, Chemistry & Bioengineering Civil Engineering, Building, Construction & Architecture Computer Science & IT

Description

Journal of Engineering and Science Application (JESA) is published by the Institute Of Advanced Knowledge and Science in helping academics, researchers, and practitioners to disseminate their research results. JESA is a blind peer-reviewed journal dedicated to publishing quality research results in ...