Hypervisor-based cloud intrusion detection through online multivariate statistical change tracking

被引:49
|
作者
Aldribi, Abdulaziz [1 ]
Traore, Issa [2 ]
Moa, Belaid [2 ]
Nwamuo, Onyekachi [2 ]
机构
[1] Qassim Univ, Dept Comp Engn, Buraydah, Saudi Arabia
[2] Univ Victoria, Dept Elect & Comp Engn, Victoria, BC, Canada
关键词
Cloud computing; Cloud security monitoring; Hypervisor-based intrusion detection; Anomaly detection; Change detection; Multistage attacks; R-PACKAGE; ATTACKS; SYSTEM;
D O I
10.1016/j.cose.2019.101646
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud computing is facing a multidimensional and rapidly evolving threat landscape, making intrusion detection more challenging. This paper introduces a new hypervisor-based cloud intrusion detection system (IDS) that uses online multivariate statistical change analysis to detect anomalous network behaviors. As a departure from the conventional monolithic network IDS feature model, we leverage the fact that a hypervisor consists of a collection of instances, to introduce an instance-oriented feature model that exploits the individual and correlated behaviors of instances to improve the detection capability. The proposed approach is evaluated by collecting and using a new cloud intrusion dataset that includes a wide variety of attack vectors. (C) 2019 Elsevier Ltd. All rights reserved.
引用
收藏
页数:21
相关论文
共 50 条
  • [41] Tracking-based Wireless Intrusion Detection for Vehicular Networks
    Santoso, Fendy
    Malaney, Robert
    2011 IEEE VEHICULAR TECHNOLOGY CONFERENCE (VTC FALL), 2011,
  • [42] Statistical Process Control-Based Intrusion Detection and Monitoring
    Park, Yongro
    Baek, Seung Hyun
    Kim, Seong-Hee
    Tsui, Kwok-Leung
    QUALITY AND RELIABILITY ENGINEERING INTERNATIONAL, 2014, 30 (02) : 257 - 273
  • [43] Host-Based Intrusion Detection Using Statistical Approaches
    Gautam, Sunil Kumar
    Om, Hari
    PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON FRONTIERS IN INTELLIGENT COMPUTING: THEORY AND APPLICATIONS (FICTA) 2015, 2016, 404 : 481 - 493
  • [44] Heuristic Intrusion Detection Based on Traffic Flow Statistical Analysis
    Szczepanik, Wojciech
    Niemiec, Marcin
    ENERGIES, 2022, 15 (11)
  • [45] Statistical Time-based Intrusion Detection in Embedded Systems
    Carreon, Nadir A.
    Gilbreath, Allison
    Lysecky, Roman
    PROCEEDINGS OF THE 2020 DESIGN, AUTOMATION & TEST IN EUROPE CONFERENCE & EXHIBITION (DATE 2020), 2020, : 562 - 567
  • [46] Chi-Square Statistical based Technique for Intrusion Detection
    Sheenam
    Bhandari, Abhinav
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2016, 10 (09): : 87 - 98
  • [47] AN ONLINE UNSUPERVISED INTRUSION DETECTION SYSTEM BASED-ON SVM
    Liang, Hu
    Nurbol
    Lin, Lin
    Kuo, Zhao
    PROCEEDINGS OF 2009 2ND IEEE INTERNATIONAL CONFERENCE ON BROADBAND NETWORK & MULTIMEDIA TECHNOLOGY, 2009, : 438 - 442
  • [48] RSU-Based Online Intrusion Detection and Mitigation for VANET
    Haydari, Ammar
    Yilmaz, Yasin
    SENSORS, 2022, 22 (19)
  • [49] An Improved Model for Enhancing Cloud Security Through Hybrid Optimization of Intrusion Detection
    Rafrafi, Manel
    Merdassi, Imen
    Ghazel, Cherif
    Saidane, Leila
    COOPERATIVE DESIGN, VISUALIZATION, AND ENGINEERING, CDVE 2024, 2024, 15158 : 278 - 288
  • [50] Enhancing Cloud of Things performance through Intrusion Detection via machine learning
    Mahfoudhi, Sami
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2019, 19 (05): : 123 - 127