Advances in artificial intelligence for detecting algorithmically generated domains: Current trends and future prospects
Hamed Alqahtani,Gulshan Kumar
DOI: https://doi.org/10.1016/j.engappai.2024.109410
IF: 8
2024-10-06
Engineering Applications of Artificial Intelligence
Abstract:This comprehensive review navigates the complex domain of Domain Generation Algorithms (DGAs) and their detection using Artificial Intelligence (AI), revealing both opportunities and challenges in the evolving cybersecurity landscape. AI techniques have significantly advanced DGA detection, with recent advancements in machine learning and deep learning models demonstrating promising results. For instance, deep learning models have achieved up to 95% accuracy in detecting DGA-generated domains, representing a substantial improvement over traditional methods. Despite these advancements, ethical considerations and the constant evolution of DGA techniques present ongoing challenges. The review highlights key obstacles in the DGA detection landscape, such as the dynamic nature of algorithms, polymorphic DGAs, data imbalance, and limitations in real-time detection. It proposes a detailed classification framework to provide researchers and practitioners with in-depth insights into the practical applications and limitations of DGA detection solutions. The study contributes by identifying the potential of various techniques, proposing a taxonomy for organizing these methods, and offering a thorough review of the AI-based DGA detection literature. A comparative analysis of AI techniques evaluates their effectiveness, with findings showing that ensemble methods and hybrid models have improved detection performance by 10%–15% over single-model approaches. Future research directions are emphasized, focusing on enhancing accuracy, interpretability, and resilience against adversarial threats. Key areas for exploration include adversarial techniques in DGA generation, the development of robust defenses, the incorporation of continuous learning techniques, and improving interpretability for practical implementation. Building trust in AI-based DGA detection systems remains crucial for their successful deployment in an increasingly adaptive cybersecurity landscape.
automation & control systems,computer science, artificial intelligence,engineering, electrical & electronic, multidisciplinary