RISS 학술연구정보서비스

검색

인기 검색어

    다국어 입력

    http://chineseinput.net/에서 pinyin(병음)방식으로 중국어를 변환할 수 있습니다.

    변환된 중국어를 복사하여 사용하시면 됩니다.

    예시)
    • 中文 을 입력하시려면 zhongwen을 입력하시고 space를누르시면됩니다.
    • 北京 을 입력하시려면 beijing을 입력하시고 space를 누르시면 됩니다.
    닫기
    KCI등재

    GPT를 활용한 MQTT 기반 IDS 우회 방법 = MQTT-based IDS Evasion Method using GPT

    한글로보기

    https://www.riss.kr/link?id=A109463289

    • 0

      상세조회
    • 0

      다운로드
    서지정보 열기
    • 내보내기
    • 내책장담기
    • 공유하기
    • 오류접수

    부가정보

    국문 초록 (Abstract) kakao i 다국어 번역

    사물인터넷(IoT)은 경량 프로토콜인 MQTT(Message Queuing Telemetry Transport)를 통해 기기 간의 원활한 통신을 지원하며, 효율성과 확장성 등의 장점으로 인해 다양한 분야에서 활용되고 있다. 그러나 IoT가 확산되며 네트워크 보안 문제도 야기되고 있으며, 특히 MQTT 트래픽의 경량성과 비표준화된 특성, 그리고 공격 기법의 지속적인 진화로 인해 기존 침입 탐지 시스템(IDS)은 이러한 트래픽을 효과적으로 탐지하는 데 한계를 드러내고 있다. 본 연구에서는 IDS의 탐지 성능을 향상시키는데 활용할 수 있도록 GPT(Generative Pre-trained Transformers) 같은 생성 인공지능(AI)를 활용하여 IDS 탐지를 회피할 수 있는 MQTT 데이터를 생성하는 방법을 제안한다. 전처리된 정상 MQTT 데이터를 기반으로 GPT 모델을 학습시켜 데이터를 생성하고, 악성 MQTT 데이터를 merge 함으로써 IDS 탐지를 우회할 수 있는 데이터를 생성하였다. 생성된 데이터는 IDS의 취약점을 분석하고, 탐지 성능 개선을 위한 학습 데이터 강화 및 모델 설계에 활용될 것을 기대한다.
    번역하기

    사물인터넷(IoT)은 경량 프로토콜인 MQTT(Message Queuing Telemetry Transport)를 통해 기기 간의 원활한 통신을 지원하며, 효율성과 확장성 등의 장점으로 인해 다양한 분야에서 활용되고 있다. 그러나 ...

    사물인터넷(IoT)은 경량 프로토콜인 MQTT(Message Queuing Telemetry Transport)를 통해 기기 간의 원활한 통신을 지원하며, 효율성과 확장성 등의 장점으로 인해 다양한 분야에서 활용되고 있다. 그러나 IoT가 확산되며 네트워크 보안 문제도 야기되고 있으며, 특히 MQTT 트래픽의 경량성과 비표준화된 특성, 그리고 공격 기법의 지속적인 진화로 인해 기존 침입 탐지 시스템(IDS)은 이러한 트래픽을 효과적으로 탐지하는 데 한계를 드러내고 있다. 본 연구에서는 IDS의 탐지 성능을 향상시키는데 활용할 수 있도록 GPT(Generative Pre-trained Transformers) 같은 생성 인공지능(AI)를 활용하여 IDS 탐지를 회피할 수 있는 MQTT 데이터를 생성하는 방법을 제안한다. 전처리된 정상 MQTT 데이터를 기반으로 GPT 모델을 학습시켜 데이터를 생성하고, 악성 MQTT 데이터를 merge 함으로써 IDS 탐지를 우회할 수 있는 데이터를 생성하였다. 생성된 데이터는 IDS의 취약점을 분석하고, 탐지 성능 개선을 위한 학습 데이터 강화 및 모델 설계에 활용될 것을 기대한다.

    더보기

    다국어 초록 (Multilingual Abstract) kakao i 다국어 번역

    The Internet of Things(IoT) supports seamless communication between devices through the lightweight protocol Message Queuing Telemetry Transport(MQTT), which is widely applied across various fields due to its advantages in efficiency and scalability. However, the rapid expansion of IoT has raised significant network security concerns. In particular, the lightweight and non-standardized characteristics of MQTT traffic, coupled with the continuous evolution of attack techniques, have exposed the limitations of existing Intrusion Detection Systems(IDS) in effectively detecting such traffic. This study proposes a method for generating MQTT data capable of evading IDS detection by leveraging Generative AI, specifically Generative Pre-trained Transformers(GPT), to enhance IDS detection performance. By training a GPT model on preprocessed normal MQTT data, malicious MQTT data were merged and synthesized to create datasets capable of bypassing IDS detection. The generated data are expected to facilitate the analysis of IDS vulnerabilities and contribute to improving detection performance through the enhancement of training data and model design.
    번역하기

    The Internet of Things(IoT) supports seamless communication between devices through the lightweight protocol Message Queuing Telemetry Transport(MQTT), which is widely applied across various fields due to its advantages in efficiency and scalability....

    The Internet of Things(IoT) supports seamless communication between devices through the lightweight protocol Message Queuing Telemetry Transport(MQTT), which is widely applied across various fields due to its advantages in efficiency and scalability. However, the rapid expansion of IoT has raised significant network security concerns. In particular, the lightweight and non-standardized characteristics of MQTT traffic, coupled with the continuous evolution of attack techniques, have exposed the limitations of existing Intrusion Detection Systems(IDS) in effectively detecting such traffic. This study proposes a method for generating MQTT data capable of evading IDS detection by leveraging Generative AI, specifically Generative Pre-trained Transformers(GPT), to enhance IDS detection performance. By training a GPT model on preprocessed normal MQTT data, malicious MQTT data were merged and synthesized to create datasets capable of bypassing IDS detection. The generated data are expected to facilitate the analysis of IDS vulnerabilities and contribute to improving detection performance through the enhancement of training data and model design.

    더보기

    참고문헌 (Reference)

    1 "Security threats caused by AI, including deepfake crimes"

    2 "SandsLab technology exports"

    3 "Rising AI hacking threats: Criminal AIs in 2024"

    4 S. Choi, "Novel Feature Extraction Method for Detecting Malicious MQTT Traffic Using Seq2Seq" 12 (12): 12306-, 2022

    5 이든 ; 임승순 ; 최선오, "Malicious traffic detection method using LSTM and sliding window in MQTT-based IoT environment" 21 (21): 111-120, 2023

    6 S. O. Choi, "Malicious PowerShell Detection using Attention against Adversarial Attacks" 9 (9): 1817-, 2020

    7 A. Radford, "Language models are unsupervised multitask learners" 1 (1): 2019

    8 "IoT vulnerability"

    9 "IoT security risks"

    10 N. Butt, "Intelligent Deep Learning for Anomaly-Based Intrusion Detection in IoT Smart Home Networks" 10 (10): 4598-, 2022

    1 "Security threats caused by AI, including deepfake crimes"

    2 "SandsLab technology exports"

    3 "Rising AI hacking threats: Criminal AIs in 2024"

    4 S. Choi, "Novel Feature Extraction Method for Detecting Malicious MQTT Traffic Using Seq2Seq" 12 (12): 12306-, 2022

    5 이든 ; 임승순 ; 최선오, "Malicious traffic detection method using LSTM and sliding window in MQTT-based IoT environment" 21 (21): 111-120, 2023

    6 S. O. Choi, "Malicious PowerShell Detection using Attention against Adversarial Attacks" 9 (9): 1817-, 2020

    7 A. Radford, "Language models are unsupervised multitask learners" 1 (1): 2019

    8 "IoT vulnerability"

    9 "IoT security risks"

    10 N. Butt, "Intelligent Deep Learning for Anomaly-Based Intrusion Detection in IoT Smart Home Networks" 10 (10): 4598-, 2022

    11 B. Isong, "Insights into Modern Intrusion Detection Strategies for Internet of Things Ecosystems" 13 (13): 2370-, 2024

    12 I. J. Goodfellow, "Generative Adversarial Networks" 2014

    13 OpenAI, "GPT-4 introduction"

    14 T. Fladby, "Evading a Machine Learning-based Intrusion Detection System through Adversarial Perturbations" 161-166, 2020

    15 신상윤 ; 이다희 ; 이상진, "Design Method of Things Malware Detection System(TMDS)" 33 (33): 459-469, 2023

    16 "Deepfakes in Russo-Ukrainian information warfare"

    17 "Cybersecurity threats in 2024: Hacktivism and AI"

    18 전용희, "A Study on the Security Modeling of Internet of Things(IoT)" 15 (15): 17-27, 2017

    더보기

    동일학술지(권/호) 다른 논문

    분석정보

    View

    상세정보조회

    0

    Usage

    원문다운로드

    0

    대출신청

    0

    복사신청

    0

    EDDS신청

    0

    동일 주제 내 활용도 TOP

    더보기

    주제

    연도별 연구동향

    연도별 활용동향

    연관논문

    연구자 네트워크맵

    공동연구자 (7)

    유사연구자 (20) 활용도상위20명

    이 자료와 함께 이용한 RISS 자료

    나만을 위한 추천자료

    해외이동버튼