Hello,
I've been looking for resources on applying ML to PCAPs, but I'm having a devil of a time. I am interested in finding outliers as well as correlating the various devices. I've rigged up a few statistical tests to identify unusual traffic and attempt to pair devices to owners, but I believe it could be done better with ML as I have time to analyze the data after capture. The trouble is, I can't seem to find any good papers or advice for applying ML to PCAPs. Are there any good resources you would recommend for analyzing PCAP/network data with ML techniques? Any advice from personal experience?
[link][6 comments]