Detection of email attack in encrypted network traffic based on abnormal behavior analysis

Wei Wang
DOI: https://doi.org/10.1117/12.2640110
2022-08-01
Abstract:As awareness of network security being enhanced, more and more encryption technologies are used in cyberspace. The security detection of e-mail system in encrypted traffic becomes a challenge. This paper proposes an analysis system of email attack in encrypted traffic based on abnormal behavior, which identifies mail behavior and determines abnormal behaviors by extracting relevant feature information in the traffic. The special model and general model of the system were used to test the encrypted traffic of the existing network. The results show that the efficiency has been greatly improved compared with traditional detection methods.
Engineering,Computer Science
What problem does this paper attempt to address?