Open Access. Powered by Scholars. Published by Universities.®

Digital Commons Network

Open Access. Powered by Scholars. Published by Universities.®

Electrical and Computer Engineering

Clemson University

2012

Botnet Detection

Articles 1 - 1 of 1

Full-Text Articles in Entire DC Network

Network Traffic Analysis Using Stochastic Grammars, Chen Lu Dec 2012

Network Traffic Analysis Using Stochastic Grammars, Chen Lu

All Dissertations

Network traffic analysis is widely used to infer information from Internet
traffic. This is possible even if the traffic is encrypted. Previous work uses
traffic characteristics, such as port numbers, packet sizes, and frequency,
without looking for more subtle patterns in the network traffic. In this work,
we use stochastic grammars, hidden Markov models (HMMs) and probabilistic
context-free grammars (PCFGs), as pattern recognition tools for traffic
analysis.
HMMs are widely used for pattern recognition and detection. We use a HMM
inference approach. With inferred HMMs, we use confidence intervals (CI) to
detect if a data sequence matches the HMM. To …