Presentation 2022-05-19
BGP Hijacking Detection Using Deep Learning
Kenta Nakashima, Mitiko Harayama,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) Failures of large autonomous systems (ASs) and network attacks can affect Border Gateway Protocol (BGP) messages, causing delays and instability in overall Internet communications. We note this as BGP hijacking and propose an anomaly detection method for BGP messages using deep learning. We report four incidents caused by Malaysia-Telekom, Level3, Google, and Facebook. We analyze BGP messages around the incidents to obtain nine features, such as AS path length statistics. These were trained on a multilayer perceptron (MLP) to determine the accuracy of incident detection. As a result, some of the features, such as new BGP announcements and withdrawals, change in conjunction with incidents. Detection accuracies for Malaysia-Telekom and Level 3 incidents were high. In this report, we show how to analyze the features of BGP messages, how they change, and the anomaly detection performance of our method.
Keyword(in Japanese) (See Japanese page)
Keyword(in English) BGP / BGP Hijacking / Anomaly detection / Deep learning
Paper # ICM2022-2
Date of Issue 2022-05-12 (ICM)

Conference Information
Committee ICM / IPSJ-CSEC / IPSJ-IOT
Conference Date 2022/5/19(2days)
Place (in Japanese) (See Japanese page)
Place (in English)
Topics (in Japanese) (See Japanese page)
Topics (in English)
Chair Kazuhiko Kinoshita(Tokushima Univ.)
Vice Chair Haruo Ooishi(NTT) / Eiji Takahashi(NEC)
Secretary Haruo Ooishi(Bosco) / Eiji Takahashi(Fujitsu)
Assistant Yoshifumi Kato(NTT)

Paper Information
Registration To Technical Committee on Information and Communication Management / Special Interest Group on Computer Security / Special Interest Group on Internet and Operation Technology
Language JPN
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) BGP Hijacking Detection Using Deep Learning
Sub Title (in English)
Keyword(1) BGP
Keyword(2) BGP Hijacking
Keyword(3) Anomaly detection
Keyword(4) Deep learning
1st Author's Name Kenta Nakashima
1st Author's Affiliation Gifu City University(Gifu City Univ)
2nd Author's Name Mitiko Harayama
2nd Author's Affiliation Gifu City University(Gifu City Univ)
Date 2022-05-19
Paper # ICM2022-2
Volume (vol) vol.122
Number (no) ICM-32
Page pp.pp.6-11(ICM),
#Pages 6
Date of Issue 2022-05-12 (ICM)