Detailed Information

Cited 0 time in webofscience Cited 0 time in scopus
Metadata Downloads

A message keyword extraction approach by accurate identification of field boundaries

Authors
Goo, Young-HoonShim, Kyu-SeokLee, Min-SeobKim, Myung-Sup
Issue Date
2021
Publisher
WILEY
Citation
INTERNATIONAL JOURNAL OF NETWORK MANAGEMENT, v.31, no.4
Indexed
SCIE
SCOPUS
Journal Title
INTERNATIONAL JOURNAL OF NETWORK MANAGEMENT
Volume
31
Number
4
URI
https://scholar.korea.ac.kr/handle/2021.sw.korea/130146
DOI
10.1002/nem.2140
ISSN
1055-7148
Abstract
With the recent exponential increase in internet speeds, the traditional network environment is evolving into a high-capacity network environment. Network traffic usage is also increasing exponentially, as are new malicious behaviors and related applications. Most of these applications and malicious behaviors use unknown protocols for which the structure is inaccessible; hence, protocol reverse engineering is receiving increasing attention in the field of network management. Various approaches have been proposed, but they still suffer from misidentification of field boundaries. To understand message structures properly, it is important to identify accurately the boundaries of the fields constituting the protocol message; accurate keyword extraction based on this approach leads to the correct inference of message types, semantics, and state machine. In this study, we propose a message keyword extraction method using accurate identification of field boundaries from delimiter inference and statistical analysis. Through the identification of field boundaries, messages can be subdivided into fields. We evaluate the efficacy of the proposed method by applying it to several textual and binary protocols. The proposed method showed better results than did other previous studies for both textual and binary protocols.
Files in This Item
There are no files associated with this item.
Appears in
Collections
Graduate School > Department of Computer and Information Science > 1. Journal Articles

qrcode

Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.

Related Researcher

Researcher KIM, MYUNG SUP photo

KIM, MYUNG SUP
Department of Computer and Information Science
Read more

Altmetrics

Total Views & Downloads

BROWSE