Unknown binary protocol clustering method based on biological information
Author:
Affiliation:

1.College of Computer Science, Sichuan University;2.School of Cyber Science and Engineering, Sichuan University

Clc Number:

TP301.6

Fund Project:

  • Article
  • |
  • Figures
  • |
  • Metrics
  • |
  • Reference
  • |
  • Related
  • |
  • Cited by
    Abstract:

    Protocol clustering is a very important step in protocol reverse engineering technology. Aiming at the characteristics of binary protocols that are more transparent and satisfying a wider range of protocols, a binary protocol clustering method based on genetic and protein biological information is proposed, which can learn from the original sequence Angle to cluster protocols directly. The method firstly converts the original binary message into a quaternary gene form, uses the fast clustering method to calculate the k-seed value of the base pairwise combination to generate a distance matrix, and uses UPGMA to calculate the minimum distance spanning tree to obtain the initial cluster; A cluster of quaternary protocol messages is converted into a hexadecimal protein chain, and the sequence is obtained in a more semantic way. The clustering method based on the improved mBed algorithm is used to cluster them with high precision. Tests under pure and mixed scenarios of known and unknown protocols show that this method can achieve efficient and highaccuracy clustering of binary protocols, and has high application value.

    Reference
    Related
    Cited by
Get Citation

Cite this article as: CONG Pei-Xin, LI Xiao-Hui, WANG Jun-Feng. Unknown binary protocol clustering method based on biological information [J]. J Sichuan Univ: Nat Sci Ed, 2022, 59: 032004.

Copy
Share
Article Metrics
  • Abstract:
  • PDF:
  • HTML:
  • Cited by:
History
  • Received:November 30,2021
  • Revised:January 17,2022
  • Adopted:January 18,2022
  • Online: June 01,2022
  • Published: