Locality-based profile analysis for secondary intrusion detection

被引:0
|
作者
Zhou, M [1 ]
Lee, R [1 ]
Lang, SD [1 ]
机构
[1] Univ Cent Florida, Sch Elect Engn & Comp Sci, Orlando, FL 32816 USA
关键词
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
While a firewall at the perimeter of a local network provides the first line of defense against attackers, many intrusion incidents result from successftd penetration of the firewall. The compromise of one computer puts the entire network at risk. We propose a distributed personal Intrusion Detection System (IDS) that provides local anomaly detection as well as centralized traffic analysis. The system first builds profiles for normal network activity and then labels as suspicious any events that deviate from the normal profiles. The normal profiles are based on variations in connection-based behavior at each individual host. Deviations at each host are recorded using a local weight assignment scheme and then further processed by the central analyzer to build a weighted link graph representing the overall network abnormality. As local networks become more vulnerable to inside attack, our system reinforces security to prevent corruption from the inside.
引用
收藏
页码:166 / 171
页数:6
相关论文
共 50 条
  • [41] A Locality-based Threading Algorithm for the Configuration-Interaction Method
    Shan, Hongzhang
    Williams, Samuel
    Johnson, Calvin
    McElvain, Kenneth
    2017 IEEE INTERNATIONAL PARALLEL AND DISTRIBUTED PROCESSING SYMPOSIUM WORKSHOPS (IPDPSW), 2017, : 1178 - 1187
  • [42] Data Locality-Based Mesh Partitioning Methods for Dataflow Machines
    Hiba, Antal
    Nagy, Zoltan
    Ruszinko, Miklos
    Szolgay, Peter
    2014 14TH INTERNATIONAL WORKSHOP ON CELLULAR NANOSCALE NETWORKS AND THEIR APPLICATIONS (CNNA), 2014,
  • [43] Locality-based techniques for computationally simplifying wireless network optimization
    Jin, RKX
    Arnold, JB
    Abusch-Magder, D
    2005 IEEE WIRELESS COMMUNICATIONS AND NETWORKING CONFERENCE, VOLS 1-4: WCNC 2005: BROADBAND WIRELESS FOR THE MASSES READY FOR TAKE-OFF., 2005, : 1786 - 1791
  • [44] LPE: Locality-Based Dead Prediction in Exclusive TLB for Large Coverage
    Yan, Jing
    Tan, Yujuan
    Ma, Zhulin
    Liu, Jingcheng
    Chen, Xianzhang
    Wang, Chengliang
    JOURNAL OF CIRCUITS SYSTEMS AND COMPUTERS, 2021, 30 (16)
  • [45] Development of a culturally sensitive, locality-based program to increase kidney donation
    Thomas, C
    ADVANCES IN RENAL REPLACEMENT THERAPY, 2002, 9 (01): : 54 - 56
  • [46] Brief Announcement: Locality-Based Aggregate Computation in Wireless Sensor Networks
    Chen, Jen-Yeu
    Pandurangan, Gopal
    Hu, Jianghai
    PODC'09: PROCEEDINGS OF THE 2009 ACM SYMPOSIUM ON PRINCIPLES OF DISTRIBUTED COMPUTING, 2009, : 298 - 299
  • [47] Locality-based security bug report identification via active learning
    Ge, Xiuting
    Fang, Chunrong
    Qian, Meiyuan
    Ge, Yu
    Qing, Mingshuang
    INFORMATION AND SOFTWARE TECHNOLOGY, 2022, 147
  • [48] Locality-Based Relaxation: An Efficient Method for GPU-Based Computation of Shortest Paths
    Safari, Mohsen
    Ebnenasir, Ali
    TOPICS IN THEORETICAL COMPUTER SCIENCE, TTCS 2017, 2017, 10608 : 41 - 56
  • [49] A Locality-based Performance Model for Load-and-compute Style Computation
    Yuan, Liang
    Zhang, Yunquan
    2012 IEEE INTERNATIONAL CONFERENCE ON CLUSTER COMPUTING (CLUSTER), 2012, : 566 - 571
  • [50] Effectiveness of a locality-based integrated diabetes care service on clinical outcomes
    Zarora, Reetu
    MacMillan, Freya
    Piya, Milan K.
    Fernandes, Brunelle
    Simmons, David
    INTERNAL MEDICINE JOURNAL, 2022, 52 (06) : 975 - 981