A Survey of Machine Learning-Based Zero-Day Attack Detection: Challenges and Future Directions
Overview
Authors
Affiliations
Zero-day attacks exploit unknown vulnerabilities so as to avoid being detected by cybersecurity detection tools. The studies [1], [2], [3] show that zero-day attacks are wide spread and are one of the major threats to computer security. The traditional signature-based detection method is not effective in detecting zero-day attacks as the signatures of zero-day attacks are typically not available beforehand. Machine Learning (ML)-based detection method is capable of capturing attacks' statistical characteristics and is, hence, promising for zero-day attack detection. In this paper, a comprehensive survey of ML-based zero-day attack detection approaches is conducted, and their ML models, training and testing data sets used, and evaluation results are compared. While significant efforts have been put forth to develop accurate and robust zero-attack detection tools, the existing methods fall short in accuracy, recall, and uniformity against different types of zero-day attacks. Major challenges toward the ML-based methods are identified and future research directions are recommended last.
Mohamed A, Al-Saleh A, Sharma S, Tejani G Sci Rep. 2025; 15(1):4036.
PMID: 39900799 PMC: 11791085. DOI: 10.1038/s41598-025-87615-2.
Integrating machine learning for sustaining cybersecurity in digital banks.
Asmar M, Tuqan A Heliyon. 2024; 10(17):e37571.
PMID: 39290262 PMC: 11407041. DOI: 10.1016/j.heliyon.2024.e37571.
Security Analysis for Smart Healthcare Systems.
Ibrahim M, Al-Wadi A, Elhafiz R Sensors (Basel). 2024; 24(11).
PMID: 38894166 PMC: 11175093. DOI: 10.3390/s24113375.
Windows malware detection based on static analysis with multiple features.
Yousuf M, Anwer I, Riasat A, Zia K, Kim S PeerJ Comput Sci. 2023; 9:e1319.
PMID: 37346681 PMC: 10280383. DOI: 10.7717/peerj-cs.1319.
Anomaly Detection Module for Network Traffic Monitoring in Public Institutions.
Wawrowski L, Bialas A, Kajzer A, Kozlowski A, Kurianowicz R, Sikora M Sensors (Basel). 2023; 23(6).
PMID: 36991685 PMC: 10059045. DOI: 10.3390/s23062974.