MalFilter: A Lightweight Real-Time Malicious URL Filtering System in Large-Scale Networks

Guolin Tan,Peng Zhang,Qingyun Liu,Xinran Liu,Chunge Zhu,Li Guo
DOI: https://doi.org/10.1109/bdcloud.2018.00089
2018-01-01
Abstract:With the rapid development of communication technologies, the broadband-speed has been greatly improved, resulting in a sharp increase in global Internet traffic. For this reason, the traditional malicious URL detection technologies based on web content analysis have encountered a large performance bottleneck. Therefore, it is of great importance to filter highly suspicious malicious URLs in advance, before feeding these URLs to malicious URL detection systems. This paper explores how to filter highly suspicious malicious URLs in large-scale real-time networks, so as to reduce the processing pressure of back-end malicious URL detection system based on content analysis. By applying lightweight features, our system can filter malicious URLs in real time while achieving a high recall. Extensive experiments are performed to demonstrate the feasibility of our proposed method on real datasets. The practical deployment of our system on backbone networks shows that our approach has good performance in filtering malicious URLs.
What problem does this paper attempt to address?