跳到主要导航 跳到搜索 跳到主要内容

Input and Output Matter: Malicious Traffic Detection With Explainability

  • Beihang University
  • Guangxi Normal University
  • Harbin University of Science and Technology
  • Kunlun Digital Technology Company Ltd.

科研成果: 期刊稿件文章同行评审

摘要

Deep learning-based models demonstrate a remarkable level of accuracy in network traffic identification. However, the black-box nature of neural networks often makes the identification results difficult to explain. Although some eXplainable Artificial Intelligence (XAI) methods have been applied to network traffic identification, most of them focus on model explainability and do not provide sufficient credibility. In emerging network systems that use proprietary protocols, low-credibility malicious traffic detection can result in severe consequences. Therefore, it is imperative to deeply understand network traffic features and trust the detection results. In this paper, we propose an explainable architecture for emerging network systems. This architecture enhances the explainability of malicious traffic detection from both input and output perspectives, aiming to understand network traffic data and improve the reliability of the results. The effectiveness of explaining inputs and outputs is verified through experimental analysis in case studies. Furthermore, we review the research on explainable models in the field of network traffic identification and summarize research opportunities.

源语言英语
页(从-至)259-267
页数9
期刊IEEE Network
39
2
DOI
出版状态已出版 - 3月 2025

指纹

探究 'Input and Output Matter: Malicious Traffic Detection With Explainability' 的科研主题。它们共同构成独一无二的指纹。

引用此