fanci-dga-detection / fanci
FANCI is a prototype implementation of a machine learning based classification engine for non-existent domains to detect domain gernation algorithm malware traffic.
☆29Updated 6 years ago
Alternatives and similar repositories for fanci:
Users that are interested in fanci are comparing it to the libraries listed below
- ISCXFlowMeter is an Ethernet traffic flow generator and analyzer for anomaly detection which has been used in different network security …☆70Updated 11 months ago
- ☆268Updated 6 years ago
- This is a paper list about Machine Learning for IDSes☆88Updated 5 months ago
- DGA Detection with ML and DL☆46Updated 5 years ago
- A LSTM based framework for handling multiclass imbalance in DGA botnet detection☆21Updated 4 years ago
- ☆22Updated 4 years ago
- ☆12Updated 5 years ago
- Original implementation and resources of DeepCASE as in the S&P '22 paper☆91Updated last year
- The project is to detect malware traffic in TLS flows using ML☆35Updated 4 years ago
- Suspicious DGA from PDNS and Sandbox.☆183Updated 2 years ago
- Applying text model to Detection Task☆72Updated 7 years ago
- The repository that contains the algorithms for generating domain names, dictionaries of malicious domain names. Developed to research th…☆218Updated 7 years ago
- A Zeek script to generate features based on timing, volume and metadata for traffic classification.☆54Updated 4 years ago
- 使用LSTM模型检测DGA域名☆42Updated 5 years ago
- A dataset containing APT group related articles and MITRE ATT&CK technique descriptions☆18Updated 5 years ago
- ☆14Updated 3 years ago
- The source code and dataset are used to demonstrate the TF model, and reproduce the results of the ACM CCS2019 paper☆50Updated 3 years ago
- ☆15Updated 2 years ago
- ☆22Updated 4 years ago
- Leveraging machine learning to detect TLS based malware in encrypted traffic without decryption☆39Updated 4 years ago
- Sample DGA classifier☆124Updated 9 years ago
- ☆74Updated last year
- Anomaly detection based on DNS traffic analysis☆51Updated 4 years ago
- [TDSC 2021] IntruSion alert-driven Attack Graph Extractor. https://ieeexplore.ieee.org/document/9557854☆32Updated 7 months ago
- dns tunnel dectect with CNN☆62Updated 5 years ago
- Traffic analysis for Tor-based malware detection and classification☆39Updated last year
- nPrint provides a generalizable data representation for network packets that works directly with machine learning techniques☆104Updated 2 years ago
- DGA Domains detection☆62Updated 6 years ago
- Code of "MalDetect: A Structure of Encrypted Malware Traffic Detection"☆15Updated 5 years ago
- ☆50Updated 8 years ago