【24h】

Cluster system for binary data frame

机译:二进制数据帧的集群系统

获取原文

摘要

Protocol reverse engineering is very important for information security. In the complex wireless network environment, in order to separate binary data frames for subsequent reverse protocol analysis, this paper proposes a frame cluster system designed for binary frames using complex protocol stacks. It first uses AC algorithm to get the frequent characteristics of the binary frames, then creatively uses the Apriori algorithm to explore the relationship between these characteristics and the 4-step pruning process to choose the most important characteristics, and finally uses the selected characteristics and their relationships, through the Kmeans algorithm to cluster the frames. Experiments show that the result is good, and if the protocol type field exist, it is possible to distinguish the layered relationships between different clusters.
机译:协议反向工程对于信息安全非常重要。在复杂的无线网络环境中,为了分离二进制数据帧以进行后续的反向协议分析,本文提出了一种使用复杂协议栈为二进制帧设计的帧群集系统。它首先使用AC算法获得二进制帧的频繁特征,然后创造性地使用Apriori算法探索这些特征与4步修剪过程之间的关系以选择最重要的特征,最后使用选定的特征及其特征。关系,通过Kmeans算法对帧进行聚类。实验表明,该方法效果良好,并且如果存在协议类型字段,则可以区分不同集群之间的分层关系。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号