An efficient formal framework for intrusion detection systems

Mohsen Rouached*, Hassen Sallay

*المؤلف المقابل لهذا العمل

نتاج البحث: المساهمة في مجلةConference articleمراجعة النظراء

6 اقتباسات (Scopus)

ملخص

Traffic anomalies and attacks are commonplace in today's networks, and identifying them rapidly and accurately is critical for large network operators. Intrusion detection systems are an important component of defensive measures protecting computer systems and networks from abuse. For an intrusion detection system, it is important to detect previously known attacks with high accuracy. However, detecting previously unseen attacks is equally important in order to minimize the losses as a result of a successful intrusion. It is also equally important to detect attacks at an early stage in order to minimize their impact. To address these challenges, this paper proposes to improve the efficiency of the network intrusion detection process by including an Event Calculus based specification to detect the registered and expected behaviour of the whole network.

اللغة الأصليةEnglish
الصفحات (من إلى)968-975
عدد الصفحات8
دوريةProcedia Computer Science
مستوى الصوت10
المعرِّفات الرقمية للأشياء
حالة النشرPublished - 2012
منشور خارجيًانعم
الحدث3rd International Conference on Ambient Systems, Networks and Technologies, ANT 2012 and 9th International Conference on Mobile Web Information Systems, MobiWIS 2012 - Niagara Falls, ON, Canada
المدة: أغسطس ٢٧ ٢٠١٢أغسطس ٢٩ ٢٠١٢

ASJC Scopus subject areas

  • ???subjectarea.asjc.1700.1700???

بصمة

أدرس بدقة موضوعات البحث “An efficient formal framework for intrusion detection systems'. فهما يشكلان معًا بصمة فريدة.

قم بذكر هذا