Poster: Speeding Up Network Intrusion Detection

被引:0
|
作者
Amado, Joao Romeiras [1 ]
Signorello, Salvatore [2 ]
Correia, Miguel [1 ]
Ramos, Fernando [1 ]
机构
[1] Univ Lisbon, Inst Super Tecn, Lisbon, Portugal
[2] Univ Lisbon, Fac Ciencias, Lisbon, Portugal
关键词
NIDS; programmable data planes; sketches;
D O I
10.1109/icnp49622.2020.9259349
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Modern network data planes have enabled new measurement approaches, including efficient sketch-based techniques with provable trade-offs between memory and accuracy, directly in the data plane, at line rate. We thus ask the question: can one leverage this richer measurement plane to improve network intrusion detection? Our answer is SPID, a push-based, feature-rich network monitoring approach to assist learning-based attack detection. SPID switches run a diverse set of measurement primitives and proactively push measurements to the monitoring system when relevant changes occur. Network measurements are then fed as input features to a classifier based on unsupervised learning to detect ongoing attacks, as they occur. In consequence, SPID aims to reduce attack detection time, when comparing to existing solutions present in large scale networks.
引用
收藏
页数:2
相关论文
共 50 条
  • [21] The sound of intrusion: A novel network intrusion detection system
    Aldarwbi, Mohammed Y.
    Lashkari, Arash H.
    Ghorbani, Ali A.
    COMPUTERS & ELECTRICAL ENGINEERING, 2022, 104
  • [22] SPEEDING-UP A CONVOLUTIONAL NEURAL NETWORK BY CONNECTING AN SVM NETWORK
    Pasquet, J.
    Chaumont, M.
    Subsol, G.
    Derras, M.
    2016 IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING (ICIP), 2016, : 2286 - 2290
  • [23] Poster: Facilitating Protocol-independent Industrial Intrusion Detection Systems
    Wolsing, Konrad
    Wagner, Eric
    Henze, Martin
    CCS '20: PROCEEDINGS OF THE 2020 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2020, : 2105 - 2107
  • [24] SPEEDING UP DETECTION AND IMAGING USING QUANTUM RADARS
    Luong, David
    Balaji, Bhashyam
    Rajan, Sreeraman
    2023 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH, AND SIGNAL PROCESSING WORKSHOPS, ICASSPW, 2023,
  • [25] Recurrent network in Network Intrusion Detection System
    Xue, JS
    Sun, JZ
    Zhang, X
    PROCEEDINGS OF THE 2004 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-7, 2004, : 2676 - 2679
  • [26] Poster Abstract: Distributed RSSI Processing for Intrusion Detection in Indoor Environments
    Kaltiokallio, Ossi
    Bocca, Maurizio
    Eriksson, Lasse
    PROCEEDINGS OF THE 9TH ACM/IEEE INTERNATIONAL CONFERENCE ON INFORMATION PROCESSING IN SENSOR NETWORKS, 2010, : 404 - 405
  • [27] Speeding Up Complex Video Copy Detection Queries
    Assent, Ira
    Kremer, Hardy
    Seidl, Thomas
    DATABASE SYSTEMS FOR ADVANCED APPLICATIONS, PT I, PROCEEDINGS, 2010, 5981 : 307 - +
  • [28] A NOVEL ALGORITHM FOR SPEEDING UP KEYPOINT DETECTION AND MATCHING
    Li, Jing
    Yang, Tao
    Pan, Quan
    Cheng, Yong-Mei
    Hou, Jun
    INTERNATIONAL JOURNAL OF IMAGE AND GRAPHICS, 2008, 8 (04) : 643 - 661
  • [29] Anomaly detection schemes in network intrusion detection
    Corvera, S
    Grau, JB
    Andina, D
    Soft Computing with Industrial Applications, Vol 17, 2004, 17 : 309 - 313
  • [30] Abnormal traffic detection for network intrusion detection
    Heo, YJ
    Ryu, KW
    SAM '04: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON SECURITY AND MANAGEMENT, 2004, : 387 - 390