Threshold verification using Statistical Approach for Fast Attack Detection

Abdollah, M. F. and Mas'ud, M. Z. and Sahib, S. and Yusof, R. and Selamat, S. R. (2009) Threshold verification using Statistical Approach for Fast Attack Detection. In: International Conference on Computing and Informatics (ICOCI) 2009, 24-25 June 2009, Kuala Lumpur, Malaysia.

[img] Microsoft Word
ICOCI09.doc - Submitted Version

Download (289kB)

Abstract

Network has grows to a mammoth size and becoming more complex, thus exposing the services it offers towards multiple types of intrusion vulnerabilities. One method to overcome intrusion is by introducing Intrusion Detection System (IDS) for detecting the threat before it can damage the network resources. IDS have the ability to analyze network traffic and recognize incoming and on-going network attack. In detecting intrusion attack, Information gathering on such activity can be classified into fast attack and slow attack. Yet, majority of the current intrusion detection systems do not have the ability to differentiate between these two types of attacks. Early detection of fast attack is very useful in a real time environment; in which it can help the targeted network from further intrusion that could let the intruder to gain access to the vulnerable machine. To address this challenge, this paper introduces a fast attack detection framework that set a threshold value to differentiate between the normal network traffic and abnormal network traffic on the victim perspective. The threshold value is abstract with the help of suitable set of feature used to detect the anomaly in the network. By introducing the threshold value, anomaly based detection can build a complete profile to detect any intrusion threat as well as at the same time reducing it false alarm alert.

Item Type: Conference or Workshop Item (Paper)
Subjects: Q Science > Q Science (General)
Divisions: Faculty of Information and Communication Technology > Department of System and Computer Communication
Depositing User: Dr. Robiah Yusof
Date Deposited: 05 Dec 2011 01:25
Last Modified: 28 May 2015 02:17
URI: http://eprints.utem.edu.my/id/eprint/188
Statistic Details: View Download Statistic

Actions (login required)

View Item View Item