FDF: Frequency detection-based filtering of scanning worms

被引:4
|
作者
Kim, Byungseung [1 ]
Kim, Hyogon [2 ]
Bahk, Solewoong [1 ]
机构
[1] Seoul Natl Univ, INMC, Sch Elect Engn & Comp Sci, Seoul, South Korea
[2] Korea Univ, Dept Comp Sci & Engn, Seoul, South Korea
关键词
Scanning worm; Frequency characteristic; Autocorrelation; Intrusion detection system;
D O I
10.1016/j.comcom.2008.12.010
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In this paper, we propose a simple algorithm for detecting scanning worms with high detection rate and low false positive rate. The novelty of our algorithm is inspecting the frequency characteristic of scanning worms instead of counting the number of suspicious connections or packets from a monitored network. Its low complexity allows it to be used on any network-based intrusion detection system as a real-time detection module for high-speed networks. Our algorithm need not be adjusted to network status because its parameters depend on application types, which are generally and widely used in any networks such as web and P2P services. By using real traces, we evaluate the performance of our algorithm and compare it with that of SNORT. The results confirm that Our algorithm Outperforms SNORT with respect to detection rate and false positive rate. (C) 2008 Elsevier B.V. All rights reserved.
引用
收藏
页码:847 / 857
页数:11
相关论文
共 50 条
  • [31] Multiple Change Point Detection-based Target Detection in Clutter
    Chalise, Batu K.
    Douglas, Jahi
    Wagner, Kevin T.
    2023 IEEE RADAR CONFERENCE, RADARCONF23, 2023,
  • [32] Impedance labelless detection-based polypyrrole protein biosensor
    Li, CM
    Chen, W
    Yang, X
    Sun, CQ
    Gao, C
    Zheng, ZX
    Sawyer, J
    FRONTIERS IN BIOSCIENCE-LANDMARK, 2005, 10 : 2518 - 2526
  • [33] A Precision Operation Optimization for Detection-Based Sensor Networks
    Lin, Frank Yeong-Sung
    Hsiao, Chiu-Han
    Wen, Yean-Fu
    IEEE 30TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS IEEE AINA 2016, 2016, : 444 - 451
  • [34] Homography and Morphological Detection-Based Virtual Shooting Range
    Aguilar, Wilbert G.
    Castro, Patricio
    Caballeros, Jessica
    Segarra, David
    UBIQUITOUS NETWORKING, UNET 2018, 2018, 11277 : 267 - 272
  • [35] Nanomotion Detection-Based Rapid Antibiotic Susceptibility Testing
    Kasas, Sandor
    Malovichko, Anton
    Villalba, Maria Ines
    Vela, Maria Elena
    Yantorno, Osvaldo
    Willaert, Ronnie G.
    ANTIBIOTICS-BASEL, 2021, 10 (03): : 1 - 16
  • [36] Detection algorithm for internet worms scanning that used user datagram protocol
    Rasheed M.M.
    Norwawi N.M.
    Ghazali O.
    Faaeq M.K.
    International Journal of Information and Computer Security, 2019, 11 (01): : 17 - 32
  • [37] Diversity analysis for energy detection-based spectrum sensing
    Mueller, A.
    Coon, J.
    Piechocki, R.
    IET COMMUNICATIONS, 2012, 6 (07) : 759 - 764
  • [38] An Empirical Study of Detection-Based Video Instance Segmentation
    Wang, Qiang
    He, Yi
    Yang, Xiaoyun
    Yang, Zhao
    Torr, Philip H. S.
    2019 IEEE/CVF INTERNATIONAL CONFERENCE ON COMPUTER VISION WORKSHOPS (ICCVW), 2019, : 713 - 716
  • [39] Subpixel edge detection method based on low-frequency filtering
    Bylinsky, Yosip Y.
    Kotyra, Andrzej
    Gromaszek, Konrad
    Iskakova, Aigul
    PHOTONICS APPLICATIONS IN ASTRONOMY, COMMUNICATIONS, INDUSTRY, AND HIGH-ENERGY PHYSICS EXPERIMENTS 2016, 2016, 10031
  • [40] Real-Time Lane Detection-Based Line Segment Detection
    Mahmoud, Ahmed
    Ehab, Loay
    Reda, Mohamed
    Abdelaleem, Mostafa
    Abd El Munim, Hossam
    Ghoneima, Maged
    Darweesh, M. Saeed
    Mostafa, Hassan
    2018 NEW GENERATION OF CAS (NGCAS), 2018, : 57 - 61