A novel honeypot based security approach for real-time intrusion detection and prevention systems

被引:54
|
作者
Baykara, Muhammet [1 ]
Das, Resul [1 ]
机构
[1] Firat Univ, Fac Technol, Dept Software Engn, TR-23119 Elazig, Turkey
关键词
Intrusion detection and prevention systems (IDS/IPS); Honeypots; Network security; System security; Network traffic visualization; FRAMEWORK; NETWORKS; ATTACKS; MODEL;
D O I
10.1016/j.jisa.2018.06.004
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In the digitalized modern world in parallel to the new technological developments, information security has become the highest priority in the individual and institutional sense. In order to ensure the security of information systems, various systems are used techniques and technologies, including encryption, authorization, firewall, honeypot based systems. In this study, a honeypot based approach for intrusion detection/ prevention systems (ID/PS) is proposed. The developed honeypot server application is combined with IDSs to analyze data in real-time and to operate effectively. Moreover, by associating the advantages of low and high-interaction honeypots, a superior hybrid honeypot system is performed. Therefore, in order to reduce the cost of configuration, maintenance, and management, after viewing the usage of honeypots on corporate networks, virtualization technologies are used. The developed system is a honeypot based intrusion detection and prevention system (IDPS) type and it is able to show the network traffic on servers visually in real-time animation. Thereby, it provides system information easily. Finally, the developed system can detect zero-day attack due to the configuration of intrusion detection, which makes it superior in performance compared to other IDSs. This system also helps in reducing the false positive level in IDSs. (c) 2018 Elsevier Ltd. All rights reserved.
引用
收藏
页码:103 / 116
页数:14
相关论文
共 50 条
  • [21] A novel, refined dataset for real-time Network Intrusion Detection
    Komisarek, Mikolaj
    Pawlicki, Marek
    Mihailescu, Maria-Elena
    Mihai, Darius
    Carabas, Mihai
    Kozik, Rafal
    Choras, Michal
    PROCEEDINGS OF THE 17TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, ARES 2022, 2022,
  • [22] A Continuous Learning Approach for Real-Time Network Intrusion Detection
    Martina, Marcello Rinaldo
    Foresti, Gian Luca
    INTERNATIONAL JOURNAL OF NEURAL SYSTEMS, 2021, 31 (12)
  • [23] A Real-Time Risk Assessment Model for Intrusion Detection Systems
    Chakir, El Mostapha
    Moughit, Mohamed
    Idrissi Khamlichi, Youness
    2017 INTERNATIONAL SYMPOSIUM ON NETWORKS, COMPUTERS AND COMMUNICATIONS (ISNCC), 2017,
  • [24] Research of Wireless Intrusion Prevention Systems based on Plan Recognition and Honeypot
    Chen, Guanlin
    Yao, Hui
    Wang, Zebing
    2009 INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS AND SIGNAL PROCESSING (WCSP 2009), 2009, : 337 - +
  • [25] Flow-based intrusion detection algorithm for supervisory control and data acquisition systems: A real-time approach
    Teixeira, Marcio Andrey
    Zolanvari, Maede
    Khan, Khaled M.
    Jain, Raj
    Meskin, Nader
    IET CYBER-PHYSICAL SYSTEMS: THEORY & APPLICATIONS, 2021, 6 (03) : 178 - 191
  • [26] SecureCore: A Multicore-based Intrusion Detection Architecture for Real-Time Embedded Systems
    Yoon, Man-Ki
    Mohan, Sibin
    Choi, Jaesik
    Kim, Jung-Eun
    Sha, Lui
    2013 IEEE 19TH REAL-TIME AND EMBEDDED TECHNOLOGY AND APPLICATIONS SYMPOSIUM (RTAS), 2013, : 21 - 31
  • [27] A security policy and Network Cartography based Intrusion Detection and Prevention Systems
    Meharouech, Sourour
    Bouhoula, Adel
    Abbes, Tarek
    JOURNAL OF INFORMATION ASSURANCE AND SECURITY, 2009, 4 (04): : 279 - 291
  • [28] Real Time Intrusion Detection and Prevention System
    Kenkre, Poonam Sinai
    Pai, Anusha
    Colaco, Louella
    PROCEEDINGS OF THE 3RD INTERNATIONAL CONFERENCE ON FRONTIERS OF INTELLIGENT COMPUTING: THEORY AND APPLICATIONS (FICTA) 2014, VOL 1, 2015, 327 : 405 - 411
  • [29] Intrusion prevention system based on diskless Honeypot
    Yeh, Her-Tyan
    Tsai, Yun-Jang
    Shanghai Jiaotong Daxue Xuebao/Journal of Shanghai Jiaotong University, 2012, 46 (02): : 289 - 295
  • [30] SwiftIDS: Real-time intrusion detection system based on LightGBM and parallel intrusion detection mechanism
    Jin, Dongzi
    Lu, Yiqin
    Qin, Jiancheng
    Cheng, Zhe
    Mao, Zhongshu
    COMPUTERS & SECURITY, 2020, 97