Enhanced Communication Behavior Recognition in Small Sample Contexts via MultiCenter Domain Adaptation (MCDA)
Rattachement africain : cn. Niveau de preuve : code pays fourni par la source.
Le résumé fourni par la source
Abstract The effectiveness of AI-driven cybersecurity threat detection heavily relies on extensive datasets for deep learning models. However, the scarcity of labeled samples poses a significant challenge to the applicability of deep learning technologies in this domain. To address this challenge, this paper proposes domain adaptation as a form of transfer learning, which leverages abundant labeled data from a source domain to enhance model training in the target domain. Specifically, this paper focuses on overfitting in small sample deep learning models for Advanced Persistent Threat (APT) communication behavior recognition, where traditional domain adaptation techniques have been proven by experimental results to be inadequate for this particular task. To overcome these challenges, we introduce the MultiCenter Domain Adaptation method (MCDA), which has been specifically designed to align with the distinct data distribution characteristics found in real-world communication datasets. Experimental results demonstrate that MCDA significantly improves model performance when addressing overfitting in small sample scenarios. Across various evaluation metrics, the proposed approach yields improvements ranging from 3.7% to 15.2%. As the scarcity of labeled samples is a prominent issue in various security analysis scenarios, our proposed MCDA approach serves as a valuable reference for enhancing threat detection models with limited labeled data.
Ce résumé expose les affirmations des auteurs. BNTIC ne l’interprète pas comme une validation indépendante des résultats.
Le contrôle bibliographique ouvert
DOI retrouvé dans Crossref DOI retrouvé ; titre concordant.
- Titre Crossref
- Enhanced Communication Behavior Recognition in Small Sample Contexts via MultiCenter Domain Adaptation (MCDA)
- Date Crossref
- 01/10/2026
- Éditeur
- Tsinghua University Press
- Type
- journal-article
Ce recoupement confirme des métadonnées liées au DOI. Il ne confirme ni la méthode ni les conclusions de l’étude, et il ne compte pas comme une seconde source scientifique indépendante.
Où se fait cette recherche
-
Nanchang University pays non établi dans la noticeUniversité ou école supérieure
-
Chengdu University pays non établi dans la noticeUniversité ou école supérieure
-
University of Electronic Science and Technology of China pays non établi dans la noticeUniversité ou école supérieure
-
Tsinghua University pays non établi dans la noticeUniversité ou école supérieure
-
Sichuan University Cybersecurity Research Institute pays non établi dans la noticeUniversité ou école supérieure
-
School of Software pays non établi dans la noticeUniversité ou école supérieure
-
School of Cyber Science and Engineering pays non établi dans la noticeUniversité ou école supérieure
-
Tsinghua Science and Technology pays non établi dans la noticeInstitution
Nanchang University, Chengdu University et University of Electronic Science and Technology of China, avec 5 autres affiliations.
Une affiliation ne permet pas de déduire la nationalité d’un auteur.