跳到主要导航 跳到搜索 跳到主要内容

Detecting air-gapped attacks using machine learning

  • Weijun Zhu
  • , Joel J.P.C. Rodrigues
  • , Jianwei Niu
  • , Qinglei Zhou
  • , Yafei Li
  • , Mingliang Xu*
  • , Bohu Huang
  • *此作品的通讯作者
  • Zhengzhou University
  • National Institute of Telecommunications (Inatel)
  • Instituto de Telecomunicações
  • Universidade de Fortaleza
  • School of Computer Science and Technology, Xidian University

科研成果: 期刊稿件文章同行评审

摘要

A GSMem malware can attack a computer connected physically with no network. However, none of the existing techniques can detect GSMem attacks, up to now. To address this problem, this paper puts forward a new method based on Machine Learning (ML), including Logistic Regression (LR), Random Forest (RF), Support Vector Machine (SVM), Boosted Tree (BT), Back-Propagation Neural Networks (BPNN) and Naive Bayes Classifier (NBC). At first, we use a large quantity of data in terms of frequencies and amplitudes of some electromagnetic waves to train our models. And then, we use the obtained models to predict that whether a GSMem attack occurs or not, according to a given frequency and amplitude. In a word, the GSMem intrusion detection problem is induced to a ML binary classification one, while the former problem is pending and the latter one has been solved. As a result, the former problem can be solved in principle in this way. The simulated experiments show that the new method is potential to detect a GSMem attack, with low False Positive Rates (FPR) and low False Negative Rates (FNR).

源语言英语
页(从-至)92-100
页数9
期刊Cognitive Systems Research
57
DOI
出版状态已出版 - 10月 2019

学术指纹

探究 'Detecting air-gapped attacks using machine learning' 的科研主题。它们共同构成独一无二的学术指纹。

引用此