A novel intrusion detection system for a local computer network

被引:0
|
作者
Tokhtabayev, A. [1 ]
Altaibek, A. [2 ]
Skormin, V. [1 ]
Tukeyev, U. [2 ]
机构
[1] Binghamton Univ, Binghamton, NY USA
[2] Kazakh Natl Univ, Alma Ata, Kazakhstan
关键词
decision-making under uncertainty; utility; possibility theory; inclusion index; comonotone fuzzy sets; Choquet integral;
D O I
10.1007/978-3-540-73986-9_27
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Local computer networks at major universities are routinely plagued by self-replicating malicious software. Due to the intensive exchange of data and information within the network, when modern viruses, worms and malicious software are introduced they propagate very quickly, leaving little or no time for human intervention. Such environments are ideal for the implementation of the automatic IDS described herein. It employs the Dynamic Code Analyzer (DCA) that detects malicious software during run time by monitoring system calls invoked by individual processes and detecting subsequences (patterns) of system calls indicative of attempted self-replication. A similar approach, also utilizing system calls, is developed for the detection of network worms. Both techniques have the potential for detecting previously unknown malicious software and significantly reducing computer resource utilization. Unfortunately, in comparison with traditional signature based antivirus software, both approaches have a much higher rate of false alarms. To address this shortcoming the authors propose a method to search for evidence of the alarm propagation within the network. This is achieved by aggregating alarms from individual hosts at a server where these alarms can be correlated, resulting in a highly accurate detection capability. Such a system, implementing the presented technology, and capable of significantly reducing the downtime of networked computers owned by students and faculty, is being implemented at the computer network at the Kazakh National University.
引用
收藏
页码:320 / +
页数:2
相关论文
共 50 条
  • [1] A Novel Approach of intrusion detection system design for computer network security
    Yi, Julan
    PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON MECHATRONICS, MATERIALS, CHEMISTRY AND COMPUTER ENGINEERING 2015 (ICMMCCE 2015), 2015, 39 : 3021 - 3025
  • [2] Research on Computer Network Intrusion Detection System
    Sun, Bo
    PROCEEDINGS OF THE 2017 4TH INTERNATIONAL CONFERENCE ON MACHINERY, MATERIALS AND COMPUTER (MACMC 2017), 2017, 150 : 27 - 30
  • [3] Research on Computer Network Intrusion Detection System
    Xia, Yong
    Lai, Min
    PROCEEDINGS OF THE 2016 6TH INTERNATIONAL CONFERENCE ON MACHINERY, MATERIALS, ENVIRONMENT, BIOTECHNOLOGY AND COMPUTER (MMEBC), 2016, 88 : 165 - 168
  • [4] The sound of intrusion: A novel network intrusion detection system
    Aldarwbi, Mohammed Y.
    Lashkari, Arash H.
    Ghorbani, Ali A.
    COMPUTERS & ELECTRICAL ENGINEERING, 2022, 104
  • [5] A decisional framework system for computer network intrusion detection
    Fessi, B. A.
    Hamdi, M.
    Benabdallah, S.
    Boudriga, N.
    EUROPEAN JOURNAL OF OPERATIONAL RESEARCH, 2007, 177 (03) : 1824 - 1838
  • [6] Research and Design of Intrusion Detection System in Computer Network
    Zhang, Xiaohui
    PROCEEDINGS OF THE 2015 INTERNATIONAL CONFERENCE ON SOCIAL SCIENCE AND TECHNOLOGY EDUCATION (ICSSTE 2015), 2015, 18 : 390 - 392
  • [7] Artificial Neural Network Classifier for Intrusion Detection System in Computer Network
    Lokeswari, N.
    Rao, B. Chakradhar
    PROCEEDINGS OF THE SECOND INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION TECHNOLOGIES, IC3T 2015, VOL 3, 2016, 381 : 581 - 591
  • [8] A hybrid intrusion detection system design for computer network security
    Aydin, M. Ali
    Zaim, A. Halim
    Ceylan, K. Goekhan
    COMPUTERS & ELECTRICAL ENGINEERING, 2009, 35 (03) : 517 - 526
  • [9] Classification of Intrusion Detection System (IDS) Based on Computer Network
    Effendy, David Ahmad
    Kusrini, Kusrini
    Sudarmawan, Sudarmawan
    2017 2ND INTERNATIONAL CONFERENCES ON INFORMATION TECHNOLOGY, INFORMATION SYSTEMS AND ELECTRICAL ENGINEERING (ICITISEE): OPPORTUNITIES AND CHALLENGES ON BIG DATA FUTURE INNOVATION, 2017, : 90 - 94
  • [10] Design of intrusion detection system oriented to computer network security
    Lou, Xiao
    PROCEEDINGS OF THE 2017 5TH INTERNATIONAL CONFERENCE ON MECHATRONICS, MATERIALS, CHEMISTRY AND COMPUTER ENGINEERING (ICMMCCE 2017), 2017, 141 : 258 - 262