{"id":"https://openalex.org/W4403577465","doi":"https://doi.org/10.1145/3627673.3679839","title":"TrafCL: Robust Encrypted Malicious Traffic Detection via Contrastive Learning","display_name":"TrafCL: Robust Encrypted Malicious Traffic Detection via Contrastive Learning","publication_year":2024,"publication_date":"2024-10-20","ids":{"openalex":"https://openalex.org/W4403577465","doi":"https://doi.org/10.1145/3627673.3679839"},"language":"en","primary_location":{"id":"doi:10.1145/3627673.3679839","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3627673.3679839","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 33rd ACM International Conference on Information and Knowledge Management","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5045164115","display_name":"Xiaodu Yang","orcid":null},"institutions":[{"id":"https://openalex.org/I4210165038","display_name":"University of Chinese Academy of Sciences","ror":"https://ror.org/05qbk4x57","country_code":"CN","type":"education","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210165038"]},{"id":"https://openalex.org/I4210156404","display_name":"Institute of Information Engineering","ror":"https://ror.org/04r53se39","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210156404"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Xiaodu Yang","raw_affiliation_strings":["Institute of Information Engineering, Chinese Academy of Sciences &amp; School of Cyber Security, University of Chinese Academy of Sciences, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Institute of Information Engineering, Chinese Academy of Sciences &amp; School of Cyber Security, University of Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210156404","https://openalex.org/I4210165038"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5006117974","display_name":"Sijie Ruan","orcid":"https://orcid.org/0000-0002-4520-7174"},"institutions":[{"id":"https://openalex.org/I125839683","display_name":"Beijing Institute of Technology","ror":"https://ror.org/01skt4w74","country_code":"CN","type":"education","lineage":["https://openalex.org/I125839683","https://openalex.org/I890469752"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Sijie Ruan","raw_affiliation_strings":["School of Computer Science and Technology, Beijing Institute of Technology, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Beijing Institute of Technology, Beijing, China","institution_ids":["https://openalex.org/I125839683"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100365055","display_name":"Jinyu Li","orcid":null},"institutions":[{"id":"https://openalex.org/I125839683","display_name":"Beijing Institute of Technology","ror":"https://ror.org/01skt4w74","country_code":"CN","type":"education","lineage":["https://openalex.org/I125839683","https://openalex.org/I890469752"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jinyu Li","raw_affiliation_strings":["School of Computer Science and Technology, Beijing Institute of Technology, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Beijing Institute of Technology, Beijing, China","institution_ids":["https://openalex.org/I125839683"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5056000853","display_name":"Yinliang Yue","orcid":"https://orcid.org/0000-0002-8417-2234"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Yinliang Yue","raw_affiliation_strings":["Zhongguancun Laboratory, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Zhongguancun Laboratory, Beijing, China","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5101923084","display_name":"Bo Sun","orcid":"https://orcid.org/0009-0007-9648-7720"},"institutions":[{"id":"https://openalex.org/I4210087772","display_name":"National Computer Network Emergency Response Technical Team/Coordination Center of Chinar","ror":"https://ror.org/00247dh76","country_code":"CN","type":"nonprofit","lineage":["https://openalex.org/I4210087772"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Bo Sun","raw_affiliation_strings":["National Computer Network Emergency Response Technical Team, Beijing, China"],"affiliations":[{"raw_affiliation_string":"National Computer Network Emergency Response Technical Team, Beijing, China","institution_ids":["https://openalex.org/I4210087772"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5045164115"],"corresponding_institution_ids":["https://openalex.org/I4210156404","https://openalex.org/I4210165038"],"apc_list":null,"apc_paid":null,"fwci":1.0911,"has_fulltext":false,"cited_by_count":3,"citation_normalized_percentile":{"value":0.81870806,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":96,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"2910","last_page":"2919"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.984499990940094,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7596017718315125},{"id":"https://openalex.org/keywords/encryption","display_name":"Encryption","score":0.6637674570083618},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5137858986854553},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.43449434638023376},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4013470411300659}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7596017718315125},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.6637674570083618},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5137858986854553},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.43449434638023376},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4013470411300659},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3627673.3679839","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3627673.3679839","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 33rd ACM International Conference on Information and Knowledge Management","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":31,"referenced_works":["https://openalex.org/W2139321017","https://openalex.org/W2343828539","https://openalex.org/W2606697812","https://openalex.org/W2798991696","https://openalex.org/W2919493784","https://openalex.org/W2963403784","https://openalex.org/W2963704216","https://openalex.org/W3004371238","https://openalex.org/W3007562398","https://openalex.org/W3035524453","https://openalex.org/W3035950449","https://openalex.org/W3082830450","https://openalex.org/W3096418565","https://openalex.org/W3105087971","https://openalex.org/W3120227884","https://openalex.org/W3134226201","https://openalex.org/W3153407530","https://openalex.org/W3156636935","https://openalex.org/W3173783447","https://openalex.org/W4200347975","https://openalex.org/W4223587185","https://openalex.org/W4224315052","https://openalex.org/W4285184946","https://openalex.org/W4290927694","https://openalex.org/W4306406279","https://openalex.org/W4312893735","https://openalex.org/W4319966459","https://openalex.org/W4323349687","https://openalex.org/W4367047070","https://openalex.org/W4388858184","https://openalex.org/W4389152158"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W2390279801","https://openalex.org/W4391913857","https://openalex.org/W2358668433","https://openalex.org/W4396701345","https://openalex.org/W2376932109","https://openalex.org/W2001405890","https://openalex.org/W4396696052"],"abstract_inverted_index":{"Remote":[0],"control":[1,10],"malwares":[2],"enable":[3],"cyber":[4],"attackers":[5],"to":[6,50,136,146,162],"achieve":[7],"command":[8],"and":[9,21,27,60,112,153,178],"over":[11],"victim":[12],"hosts,":[13],"which":[14,120],"are":[15],"widely":[16],"employed":[17],"in":[18,67,180],"ransomware":[19],"attacks":[20],"espionage":[22],"operations,":[23],"jeopardizing":[24],"personal":[25],"privacy":[26],"state":[28],"security.":[29],"To":[30,63],"effectively":[31],"detect":[32,163],"such":[33],"malicious":[34,80,165],"traffics":[35,54],"holds":[36],"high":[37],"practical":[38],"value.":[39],"However,":[40],"prior":[41],"works":[42],"have":[43],"not":[44],"adequately":[45],"addressed":[46],"the":[47,91,173],"task":[48],"due":[49],"challenges":[51],"of":[52],"encrypted":[53,79,164],"with":[55,102,125],"misleading":[56,104],"contents,":[57],"incomplete":[58,88,155],"sessions,":[59],"limited":[61],"labels.":[62],"overcome":[64],"these":[65],"limitations,":[66],"this":[68],"paper,":[69],"we":[70,85,131],"propose":[71],"TrafCL,":[72,84],"a":[73,133],"contrastive":[74],"learning":[75],"framework":[76],"for":[77,90,150],"robust":[78],"traffic":[81,105],"detection.":[82],"In":[83],"first":[86],"generate":[87],"variants":[89],"input":[92],"session":[93,100,114,123],"by":[94,107,116,176],"Session":[95,109,118],"Augmentation,":[96],"then":[97,157],"extract":[98],"explicit":[99],"features":[101,124],"excluding":[103],"contents":[106],"Triple-aspect":[108],"Feature":[110],"Extraction,":[111],"obtain":[113,137],"representations":[115,149],"Co-attention":[117],"Encoder":[119],"fuses":[121],"triple-aspect":[122],"capturing":[126],"their":[127,154],"interdependence.":[128],"After":[129],"that,":[130],"use":[132],"projection":[134],"head":[135],"final":[138],"representations.":[139],"TrafCL":[140,171],"is":[141],"pre-trained":[142],"using":[143],"unlabeled":[144],"data":[145,161],"learn":[147],"close":[148],"complete":[151],"sessions":[152],"variants,":[156],"fine-tuned":[158],"on":[159,182],"labeled":[160],"traffics.":[166],"Experiment":[167],"results":[168],"show":[169],"that":[170],"outperforms":[172],"best":[174],"baseline":[175],"11.35%":[177],"6.71%":[179],"F1-scores":[181],"two":[183],"datasets":[184],"respectively.":[185]},"counts_by_year":[{"year":2025,"cited_by_count":3}],"updated_date":"2025-12-27T23:08:20.325037","created_date":"2025-10-10T00:00:00"}
