Detecting Slow Port Scan Using Fuzzy Rule Interpolation

被引:0
|
作者
Almseidin, Mohammad [1 ]
Al-kasassbeh, Mouhammd [2 ]
Kovacs, Szilveszter [1 ]
机构
[1] Univ Miskolc, Dept Informat Technol, Miskolc, Hungary
[2] Princess Sumaya Univ Technol, Dept Comp Sci, Amman, Jordan
关键词
Fuzzy Rule Interpolation; Intrusion Detection System; Port Scan Attack; SNORT;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Fuzzy Rule Interpolation (FRI) offers a convenient way for delivering rule based decisions on continuous universes avoiding the burden of binary decisions. In contrast with the classical fuzzy systems, FRI decision is also performing well on partially complete rule bases serving the methodologies having incremental rule base creation structure. These features make the FRI methods to be perfect candidate for detecting and preventing different types of attacks in an Intrusion Detection System (IDS) application. This paper aims to introduce a detection approach for slow port scan attacks by adapting the FRI reasoning method. A controlled test-bed environment was also designed and implemented for the purpose of this study. The proposed detection approach was tested and evaluated using different observations. Experimental analysis on a real test-bed environment provides useful insights about the effectiveness of the proposed detection approach. These insights include information regarding the detection approach's efficacy in detecting the port scan attack and in determining its level of severity. In the discussion the efficacy of the proposed detection approach is compared to the SNORT IDS. The results of the comparison showed that the SNORT IDS was unable to detect the slow and very slow port scan attacks whereas the proposed FRI rule based detection approach was able to detect the attacks and generate comprehensive results to further analyze the attack's severity.
引用
收藏
页码:33 / 38
页数:6
相关论文
共 50 条
  • [1] Building a cognizant honeypot for detecting active fingerprinting attacks using dynamic fuzzy rule interpolation
    Naik, Nitin
    Shang, Changjing
    Jenkins, Paul
    Shen, Qiang
    [J]. EXPERT SYSTEMS, 2021, 38 (05)
  • [2] Detecting Port Scan Attacks Using Logistic Regression
    Abu Al-Haija, Qasem
    Saleh, Eyad
    Alnabhan, Mohammad
    [J]. 2021 4TH INTERNATIONAL SYMPOSIUM ON ADVANCED ELECTRICAL AND COMMUNICATION TECHNOLOGIES (ISAECT), 2021,
  • [3] Linear fuzzy rule base interpolation using fuzzy geometry
    Das, Suman
    Chakraborty, Debjani
    Koczy, Laszlo T.
    [J]. INTERNATIONAL JOURNAL OF APPROXIMATE REASONING, 2019, 112 : 105 - 118
  • [4] Forward and backward fuzzy rule base interpolation using fuzzy geometry
    Das, S.
    Chakraborty, D.
    Koczy, L. T.
    [J]. IRANIAN JOURNAL OF FUZZY SYSTEMS, 2023, 20 (03): : 127 - 146
  • [5] Backward Fuzzy Rule Interpolation
    Jin, Shangzhu
    Diao, Ren
    Quek, Chai
    Shen, Qiang
    [J]. IEEE TRANSACTIONS ON FUZZY SYSTEMS, 2014, 22 (06) : 1682 - 1698
  • [6] Fuzzy Rule Interpolation with a Transformed Rule Base
    Zhou, Mou
    Shang, Changjing
    Li, Guobin
    Jin, Shangzhu
    Peng, Jun
    Shen, Qiang
    [J]. IEEE CIS INTERNATIONAL CONFERENCE ON FUZZY SYSTEMS 2021 (FUZZ-IEEE), 2021,
  • [7] Extending the Concept of Fuzzy Rule Interpolation with the Interpolation of Fuzziness
    Kovacs, Szilveszter
    [J]. 2012 IEEE INTERNATIONAL CONFERENCE ON FUZZY SYSTEMS (FUZZ-IEEE), 2012,
  • [8] Interpolation in hierarchical fuzzy rule bases
    Kóczy, LT
    Hirota, K
    Muresan, L
    [J]. NINTH IEEE INTERNATIONAL CONFERENCE ON FUZZY SYSTEMS (FUZZ-IEEE 2000), VOLS 1 AND 2, 2000, : 471 - 477
  • [9] Generalized Adaptive Fuzzy Rule Interpolation
    Yang, Longzhi
    Chao, Fei
    Shen, Qiang
    [J]. IEEE TRANSACTIONS ON FUZZY SYSTEMS, 2017, 25 (04) : 839 - 853
  • [10] Towards Dynamic Fuzzy Rule Interpolation
    Naik, Nitin
    Diao, Ren
    Quek, Chai
    Shen, Qiang
    [J]. 2013 IEEE INTERNATIONAL CONFERENCE ON FUZZY SYSTEMS (FUZZ - IEEE 2013), 2013,