Abstract:
Border Gateway Protocol (BGP) enables Internet data routing. Hence, its anomalies affect Internet connectivity and cause routing discon-nections, route flaps, and oscilla...Show MoreMetadata
Abstract:
Border Gateway Protocol (BGP) enables Internet data routing. Hence, its anomalies affect Internet connectivity and cause routing discon-nections, route flaps, and oscillations. Detection of anomalous BGP routing dynamics is a topic of great interest in cybersecurity. In this article, we survey machine learning algorithms for detecting BGP anomalies and intrusions. Gradient boosting decision tree and deep learning algorithms are evaluated by creating models using collected routing records during the WestRock ransomware event. BCPGuard, a BGP anomaly detection tool, has been developed to integrate various stages of the anomaly detection process.
Published in: IEEE Communications Magazine ( Volume: 61, Issue: 3, March 2023)
Funding Agency:
Keywords assist with retrieval of results and provide a means to discovering other relevant content. Learn more.
- IEEE Keywords
- Index Terms
- Machine Learning ,
- Border Gateway Protocol ,
- Border Gateway Protocol Routing ,
- Deep Learning ,
- Learning Algorithms ,
- Decision Tree ,
- Anomaly Detection ,
- Gradient Boosting Decision Tree ,
- Convolutional Neural Network ,
- Dimensionality Reduction ,
- Convolutional Layers ,
- Unsupervised Learning ,
- Long Short-term Memory ,
- Recurrent Neural Network ,
- Convolutional Neural Network Model ,
- Information Leakage ,
- Unsupervised Algorithm ,
- Gated Recurrent Unit ,
- Feature Selection Algorithm ,
- Average Path Length ,
- Bidirectional Recurrent Neural Network ,
- Anomalous Events ,
- Regular Events ,
- Unsupervised Machine Learning Algorithm ,
- Isolation Forest ,
- Regular Data ,
- Transmission Control Protocol ,
- Types Of Messages ,
- Malware
Keywords assist with retrieval of results and provide a means to discovering other relevant content. Learn more.
- IEEE Keywords
- Index Terms
- Machine Learning ,
- Border Gateway Protocol ,
- Border Gateway Protocol Routing ,
- Deep Learning ,
- Learning Algorithms ,
- Decision Tree ,
- Anomaly Detection ,
- Gradient Boosting Decision Tree ,
- Convolutional Neural Network ,
- Dimensionality Reduction ,
- Convolutional Layers ,
- Unsupervised Learning ,
- Long Short-term Memory ,
- Recurrent Neural Network ,
- Convolutional Neural Network Model ,
- Information Leakage ,
- Unsupervised Algorithm ,
- Gated Recurrent Unit ,
- Feature Selection Algorithm ,
- Average Path Length ,
- Bidirectional Recurrent Neural Network ,
- Anomalous Events ,
- Regular Events ,
- Unsupervised Machine Learning Algorithm ,
- Isolation Forest ,
- Regular Data ,
- Transmission Control Protocol ,
- Types Of Messages ,
- Malware