Table of Contents
Fetching ...

SmartX Intelligent Sec: A Security Framework Based on Machine Learning and eBPF/XDP

Talaya Farasat, JongWon Kim, Joachim Posegga

TL;DR

SmartX Intelligent Sec leverages a combination of the lightweight extended Berkeley Packet Filter/eXpress Data Path/eBPF/XDP for efficient network packet capturing and filtering malicious network traffic, and a Bidirectional Long Short-Term Memory classifier for network threat detection.

Abstract

Information and Communication Technologies (ICT) infrastructures are becoming increasingly complex day by day, facing numerous challenges to support the latest networking paradigms. Security is undeniably a critical component for the effective functioning of these advanced ICT infrastructures. By considering the current network security challenges, we propose SmartX Intelligent Sec, an innovative intelligent security framework. SmartX Intelligent Sec leverages a combination of the lightweight extended Berkeley Packet Filter/eXpress Data Path (eBPF/XDP) for efficient network packet capturing and filtering malicious network traffic, and a Bidirectional Long Short-Term Memory (BiLSTM) classifier for network threat detection. Our real-time prototype demonstrates that SmartX Intelligent Sec offers comprehensive automation features, enabling continuous network packet capturing, effective network threat detection, and efficient filtering of malicious network traffic. This framework ensures enhanced security and operational efficiency for modern ICT infrastructures.

SmartX Intelligent Sec: A Security Framework Based on Machine Learning and eBPF/XDP

TL;DR

SmartX Intelligent Sec leverages a combination of the lightweight extended Berkeley Packet Filter/eXpress Data Path/eBPF/XDP for efficient network packet capturing and filtering malicious network traffic, and a Bidirectional Long Short-Term Memory classifier for network threat detection.

Abstract

Information and Communication Technologies (ICT) infrastructures are becoming increasingly complex day by day, facing numerous challenges to support the latest networking paradigms. Security is undeniably a critical component for the effective functioning of these advanced ICT infrastructures. By considering the current network security challenges, we propose SmartX Intelligent Sec, an innovative intelligent security framework. SmartX Intelligent Sec leverages a combination of the lightweight extended Berkeley Packet Filter/eXpress Data Path (eBPF/XDP) for efficient network packet capturing and filtering malicious network traffic, and a Bidirectional Long Short-Term Memory (BiLSTM) classifier for network threat detection. Our real-time prototype demonstrates that SmartX Intelligent Sec offers comprehensive automation features, enabling continuous network packet capturing, effective network threat detection, and efficient filtering of malicious network traffic. This framework ensures enhanced security and operational efficiency for modern ICT infrastructures.

Paper Structure

This paper contains 12 sections, 4 equations, 6 figures, 3 tables.

Figures (6)

  • Figure 1: SmartX Intelligent Sec Design
  • Figure 2: Linux network stack with eBPF/XDP
  • Figure 3: ROC result of different classifiers
  • Figure 4: SmartX Intelligent Sec Real Time Implementation Working
  • Figure 5: SmartX Intelligent Sec Real Time Implementation
  • ...and 1 more figures