Facebook pixel tracking

The Science and Information (SAI) Organization publishes open-access peer-reviewed journals in computer science and artificial intelligence.

Contact Info
Website thesai.org
Follow Us
Contact Info
Follow Us
Research Article | Open Access |

AI-Driven Firewall Log Analysis: Enhancing Threat Detection with Deep Learning Techniques

Author 1: Yasmine ABOUDRAR Author 2: Khalid BOURAGBA Author 3: Mohamed OUZZIF
International Journal of Advanced Computer Science and Applications (IJACSA) · Vol. 16, No. 7 · Published 2025

DOI: https://doi.org/10.14569/IJACSA.2025.0160779

Abstract

As cyber-attacks get increasingly sophisticated, cybersecurity threats have surged, with 430 million new malware instances identified in 2023 representing a 36% rise compared to 2020 figures in the United States.Traditional firewall defense mechanisms are increasingly restricted. Even though firewalls are the frontline defense mechanism, their reliance on preconfigured rules and signature-based detection leaves them behind in the identification of carefully crafted, dynamic attacks. Furthermore, they generate enormous volumes of logs and hence add high false positive rates, making manual threat analysis a tedious and time-consuming process. In order to counter such issues, we propose an AI-fortified SIEM system using deep learning algorithms for intelligent firewall log analysis. This serves to reduce false positives through event pattern extraction and correlation, allowing for more efficient threat detection. By employing deep neural networks like fully connected, convolutional, and recurrent, our system enhances classification accuracy and optimizes threat detection. We utilize actual firewall logs and benchmarking datasets (UNSW-NB15-training and UNSW-NB15-testing) to assess our system, one for training and the other for testing. Our primary objective is to differentiate between true positive and false positive alarms so that security analysts can respond to cyber threats more effectively. The experimental results demonstrate the effectiveness of our approach in improving threat monitoring and IT security. Besides, they confirm that our learning-based models are better than classical machine learning methods and are therefore a realistic and efficient solution to real-world firewall security.

Keywords

How to Cite this Article

ABOUDRAR, Y., BOURAGBA, K., & OUZZIF, M. (2025). AI-Driven Firewall Log Analysis: Enhancing Threat Detection with Deep Learning Techniques. International Journal of Advanced Computer Science and Applications, 16(7). https://doi.org/10.14569/IJACSA.2025.0160779

ABOUDRAR, Yasmine, et al.. "AI-Driven Firewall Log Analysis: Enhancing Threat Detection with Deep Learning Techniques." International Journal of Advanced Computer Science and Applications, vol. 16, no. 7, 2025, https://doi.org/10.14569/IJACSA.2025.0160779.

@article{ABOUDRAR2025,
  title     = {AI-Driven Firewall Log Analysis: Enhancing Threat Detection with Deep Learning Techniques},
  journal   = {International Journal of Advanced Computer Science and Applications},
  volume    = {16},
  number    = {7},
  year      = {2025},
  publisher = {The Science and Information Organization},
  author    = {Yasmine ABOUDRAR and Khalid BOURAGBA and Mohamed OUZZIF},
  doi       = {10.14569/IJACSA.2025.0160779},
  url       = {https://doi.org/10.14569/IJACSA.2025.0160779}
}

Open Access — licensed under a Creative Commons Attribution 4.0 International License. Unrestricted use, distribution, and reproduction in any medium, even commercially, as long as the original work is properly cited.