Combined Behavior- and Signature-Based Internet Worm Detection System

被引:0
|
作者
Altaher, Altyeb [1 ]
Ramadass, Sureswaran [1 ]
Meulenberg, Andrew [1 ]
Abdat, Mustafa [1 ]
Ali, Ammar [1 ]
机构
[1] Univ Sains Malaysia, Natl Adv Ctr IPv6, George Town 11800, Malaysia
关键词
Internet worm detection; behavior based worm detection; signature based worm detection; worm propagation model; worm payload;
D O I
暂无
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
The number of polymorphic and new worms on the Internet is increasing rapidly. Worm infections cause traffic overloads in office networks and congestion of Internet links by replicating itself and hurting the affected companies by causing data loss and damage. Traditional signature-based worm detection systems fail to detect polymorphic and new, previously unseen worms. In this paper, based on an analysis of network traffic behavior, we develop the Combined Worm Detection System (CWDS) by combining signature-based worm detection and behavior-based worm detection. The CWDS uses the signature-based worm detection to detect the known worms, while it uses the behavior-based worm detection to detect polymorphic and new worms. An experimental study on real time network traffic and standard worm data sets is performed to test the proposed CWDS system. The experimental results demonstrate that the proposed CWDS system can detect both known and unknown worms with high detection rate and accuracy.
引用
收藏
页码:4213 / 4222
页数:10
相关论文
共 50 条
  • [21] An Efficient Signature-Based Approach for Automatic Detection of Internet Worms over Large-Scale Networks
    Simkhada, Kumar
    Taleb, Tarik
    Waizumi, Yuji
    Jamalipour, Abbas
    Kato, Nei
    Nemoto, Yoshiaki
    2006 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, VOLS 1-12, 2006, : 2364 - 2369
  • [22] Characterizing Realistic Signature-based Intrusion Detection Benchmarks
    Aldwairi, Monther
    Alshboul, Mohammad A.
    Seyam, Asmaa
    PROCEEDINGS OF THE 6TH INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY: IOT AND SMART CITY (ICIT 2018), 2018, : 97 - 103
  • [23] A Network-based Internet Worm Intrusion Detection and Prevention System
    Wattanapongsakorn, N.
    Wonghirunsombat, E.
    Assawaniwed, T.
    Hanchana, V.
    Srakaew, S.
    Charnsripinyo, C.
    2013 INTERNATIONAL CONFERENCE ON IT CONVERGENCE AND SECURITY (ICITCS), 2013,
  • [24] Signature-Based Intrusion Detection System (IDS) for In-Vehicle CAN Bus Network
    Jin, Shiyi
    Chung, Jin-Gyun
    Xu, Yinan
    2021 IEEE INTERNATIONAL SYMPOSIUM ON CIRCUITS AND SYSTEMS (ISCAS), 2021,
  • [25] Wavelets Based Anomaly-Based Detection System or J48 and Naive Bayes Based Signature-Based Detection System: A Comparison
    Kaur, Gagandeep
    Bansal, Amit
    Agarwal, Arushi
    AMBIENT COMMUNICATIONS AND COMPUTER SYSTEMS, RACCCS 2017, 2018, 696 : 213 - 224
  • [26] Effective intrusion detection model through the combination of a signature-based intrusion detection system and a machine learning-based intrusion detection system
    Weon, Ill-Young
    Song, Doo Heon
    Lee, Chang-Hoon
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2006, 22 (06) : 1447 - 1464
  • [27] CBSigIDS: Towards Collaborative Blockchained Signature-based Intrusion Detection
    Tug, Steven
    Meng, Weizhi
    Wang, Yu
    IEEE 2018 INTERNATIONAL CONGRESS ON CYBERMATICS / 2018 IEEE CONFERENCES ON INTERNET OF THINGS, GREEN COMPUTING AND COMMUNICATIONS, CYBER, PHYSICAL AND SOCIAL COMPUTING, SMART DATA, BLOCKCHAIN, COMPUTER AND INFORMATION TECHNOLOGY, 2018, : 1228 - 1235
  • [28] Attack Resilient Trust and Signature-based Intrusion Detection Systems
    Kabaso, Boniface
    Aradeh, Saber A.
    Abidoye, Ademola P.
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2021, 12 (03) : 701 - 707
  • [29] A Signature-behavior-based P2P worm detection approach
    Yao, Yu
    Li, Yong
    Gao, Fu-xiang
    Yu, Ge
    HIS 2009: 2009 NINTH INTERNATIONAL CONFERENCE ON HYBRID INTELLIGENT SYSTEMS, VOL 2, PROCEEDINGS, 2009, : 391 - +
  • [30] USAID: Unifying signature-based and anomaly-based intrusion detection
    Li, ZW
    Das, A
    Zhou, JY
    ADVANCES IN KNOWLEDGE DISCOVERY AND DATA MINING, PROCEEDINGS, 2005, 3518 : 702 - 712