Automatic backdoor analysis with a network intrusion detection system and an integrated service checker

被引:0
|
作者
Juslin, J [1 ]
Virtanen, T [1 ]
机构
[1] Helsinki Univ Technol, Helsinki, Finland
关键词
intrusion detection; automation; alarm filtering;
D O I
10.1109/SMCSIA.2003.1232410
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
In this paper we examine how a network intrusion detection system can be used as a trigger for service checking and reporting. This approach reduces the amount of false alerts (false positives) and raises the quality of the alert report. A sample data over the Christmas period of year 2002 is analyzed as an example and detection of unauthorized SSH servers used as the main application. Unauthorized interactive backdoors to a network belong to the most dangerous class of intrusions [1]. These backdoors are usually installed by root-kits, to hide the system compromise activity. They are a gateway to launch exploits, gain super-user access to hosts in the internal network and use the attacked network as a stepping stone to attack other networks. In this research we have developed software and done statistical analysis to assess and prevent such situations.
引用
收藏
页码:122 / 126
页数:5
相关论文
共 50 条
  • [41] Network Intrusion Detection System in a Light Bulb
    Manocchio, Liam Daly
    Layeghy, Siamak
    Portmann, Marius
    [J]. 2022 32ND INTERNATIONAL TELECOMMUNICATION NETWORKS AND APPLICATIONS CONFERENCE (ITNAC), 2022, : 359 - 366
  • [42] Forest intrusion detection system with sensor network
    Koszteczky, Bence
    Vakulya, Gergely
    Simon, Gyula
    [J]. 2015 IEEE INTERNATIONAL INSTRUMENTATION AND MEASUREMENT TECHNOLOGY CONFERENCE (I2MTC), 2015, : 1672 - 1676
  • [43] An Efficient Cloud Network Intrusion Detection System
    Ghosh, Partha
    Mandal, Abhay Kumar
    Kumar, Rupesh
    [J]. INFORMATION SYSTEMS DESIGN AND INTELLIGENT APPLICATIONS, VOL 1, 2015, 339 : 91 - 99
  • [44] An Efficient Network Intrusion Detection and Classification System
    Ahmad, Iftikhar
    Ul Haq, Qazi Emad
    Imran, Muhammad
    Alassafi, Madini O.
    AlGhamdi, Rayed A.
    [J]. MATHEMATICS, 2022, 10 (03)
  • [45] Research on the System Model of Network Intrusion Detection
    Yang Yunfeng
    [J]. PROCEEDINGS OF THE 2012 INTERNATIONAL CONFERENCE OF MODERN COMPUTER SCIENCE AND APPLICATIONS, 2013, 191 : 185 - 190
  • [46] A consensus based network intrusion detection system
    Toulouse, Michel
    Bui Quang Minh
    Curtis, Philip
    [J]. 2015 5TH INTERNATIONAL CONFERENCE ON IT CONVERGENCE AND SECURITY (ICITCS), 2015,
  • [47] An Artificial Bioindicator System for Network Intrusion Detection
    Blum, Christian
    Lozano, Jose A.
    Pinacho Davidson, Pedro
    [J]. ARTIFICIAL LIFE, 2015, 21 (02) : 93 - 118
  • [48] Intrusion detection system for controller area network
    Vinayak Tanksale
    [J]. Cybersecurity, 7
  • [49] Network Intrusion Detection by Artificial Immune System
    Shen, Junyuan
    Wang, Jidong
    [J]. IECON 2011: 37TH ANNUAL CONFERENCE ON IEEE INDUSTRIAL ELECTRONICS SOCIETY, 2011,
  • [50] Network Attacks and Intrusion Detection System: A Brief
    Sharma, Neha V.
    Kavita
    Agarwal, Gaurav
    [J]. 2019 2ND INTERNATIONAL CONFERENCE ON INTELLIGENT COMMUNICATION AND COMPUTATIONAL TECHNIQUES (ICCT), 2019, : 280 - 283