Machine Learning for Detecting the WestRock Ransomware Attack Using BGP Routing Records | IEEE Journals & Magazine | IEEE Xplore

Machine Learning for Detecting the WestRock Ransomware Attack Using BGP Routing Records


Abstract:

Border Gateway Protocol (BGP) enables Internet data routing. Hence, its anomalies affect Internet connectivity and cause routing discon-nections, route flaps, and oscilla...Show More

Abstract:

Border Gateway Protocol (BGP) enables Internet data routing. Hence, its anomalies affect Internet connectivity and cause routing discon-nections, route flaps, and oscillations. Detection of anomalous BGP routing dynamics is a topic of great interest in cybersecurity. In this article, we survey machine learning algorithms for detecting BGP anomalies and intrusions. Gradient boosting decision tree and deep learning algorithms are evaluated by creating models using collected routing records during the WestRock ransomware event. BCPGuard, a BGP anomaly detection tool, has been developed to integrate various stages of the anomaly detection process.
Published in: IEEE Communications Magazine ( Volume: 61, Issue: 3, March 2023)
Page(s): 20 - 26
Date of Publication: 05 December 2022

ISSN Information:

Funding Agency:


Contact IEEE to Subscribe

References

References is not available for this document.