Politecnico di Torino (logo)

Automating Cybersecurity: Analysis of Network Logs using Machine Learning and a Web Application

Alessandro Morelli

Automating Cybersecurity: Analysis of Network Logs using Machine Learning and a Web Application.

Rel. Marco Mellia, Luca Vassio. Politecnico di Torino, Corso di laurea magistrale in Ingegneria Informatica (Computer Engineering), 2023


This thesis aims to enhance the usage of automated network traffic analysis for identifying coordinated attacker groups, which is crucial for cybersecurity operations. Network traffic analysis involves monitoring and analyzing network traffic data to spot security concerns. The proposed machine learning framework that was already developed, DarkVec, can automatically recognize groups of IP addresses that work together and categorize network traffic, using supervised machine learning techniques. The suggested web application can improve the effectiveness of network traffic analysis, reducing the impact of cyberattacks and strengthening overall cybersecurity posture of a network. The proposed framework has the potential to reduce the time and resources required for network traffic analysis and improve the accuracy and reliability of the analysis results. The thesis will evaluate the effectiveness of the proposed framework using real-world network traffic data and compare the result of manual analysis and an automated one using the web application developed. This research will contribute to the development of more effective and efficient network traffic analysis techniques, with applications in the field of cybersecurity in particular network security.

Relators: Marco Mellia, Luca Vassio
Academic year: 2022/23
Publication type: Electronic
Number of Pages: 73
Additional Information: Tesi secretata. Fulltext non presente
Corso di laurea: Corso di laurea magistrale in Ingegneria Informatica (Computer Engineering)
Classe di laurea: New organization > Master science > LM-32 - COMPUTER SYSTEMS ENGINEERING
Aziende collaboratrici: UNSPECIFIED
URI: http://webthesis.biblio.polito.it/id/eprint/27786
Modify record (reserved for operators) Modify record (reserved for operators)