透過您的圖書館登入
IP:3.15.27.232
  • 期刊
  • Ahead-of-Print

Distributed Hierarchical Pattern-Matching for Network Intrusion Detection

本文正式版本已出版,請見:10.6138/JIT.2016.17.2.20131021

並列摘要


Network intrusion detection systems are widely used in present-day public and private networks to successfully detect cyber intrusions. In recent times, a plethora of readily available hacking tools have widened the adversarial attack surface to launch advanced malicious attacks. This entails the need to devise and deploy stronger security solutions including countermeasures that prevent, detect, and deter such attacks. The need for an efficient and effective mechanism for detecting network intrusions in real-time cannot be understated. Distributed pattern matching through information sharing between intrusion detection agents is one such approach towards identifying anomalous activity in a network. In this paper, a novel distributed pattern matching approach is proposed for detecting malicious network activities through first analyzing network traffic by detector agents, and subsequently exchanging information (subpattern) among detector agents in order to holistically identify anomalous network activities. The detection effectiveness of the proposed approach is studied using simulation conducted considering different pattern exchange hierarchies. Simulation results show that our approach yields high accuracies in intrusion detection with low false alarm rates.

被引用紀錄


Hung, C. Y. (2009). 對於網路入侵偵測系統之功能平行化樣本比對演算法 [master's thesis, National Chiao Tung University]. Airiti Library. https://doi.org/10.6842/NCTU.2009.00653
Chung, C. F. (2006). 設計與實作狀態化高速入侵偵測系統 [master's thesis, National Taiwan University]. Airiti Library. https://doi.org/10.6342/NTU.2006.02405

延伸閱讀