Network traffic analysis using AI (machine learning and deep learning) models made significant progress over the past decades. Traffic analysis addresses various challenging problems in network security, ranging from detection of anomalies and attacks to countering of Internet censorship. AI models are also developed to expose user privacy risks as demonstrated by the research works on fingerprinting of user-visiting websites, IoT devices, and different applications, even when payloads are encrypted. Despite these advancements, significant challenges remain in the domain of network traffic analysis to effectively secure our networks from evolving threats and attacks. After briefly reviewing the relevant tasks and recent AI models for traffic analysis, we discuss the challenges that lie ahead.
翻译:利用人工智能(机器学习与深度学习)模型进行网络流量分析在过去数十年间取得了显著进展。流量分析致力于解决网络安全领域的诸多挑战性问题,涵盖从异常检测与攻击识别到对抗网络审查等多个层面。人工智能模型亦被用于揭示用户隐私风险,相关研究已证明其能够对用户访问的网站、物联网设备及各类应用进行指纹识别,即使在数据载荷加密的情况下仍可实现。尽管已取得这些进展,网络流量分析领域仍面临重大挑战,难以有效保护网络免受不断演变的威胁与攻击。本文在简要回顾流量分析的相关任务与近期人工智能模型后,将深入探讨该领域未来面临的核心挑战。