E-NIPS: An Event-based Network Intrusion Prediction System

被引:0
|
作者
Kannadiga, Pradeep [1 ]
Zulkernine, Mohammad [1 ]
Haque, Anwar [2 ]
机构
[1] Queens Univ, Sch Comp, Kingston, ON K7L 3N6, Canada
[2] Network Planning Bell, Hamilton, ON L8P 4S6, Canada
来源
关键词
intrusion detection and prediction; attack classes; network security;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Intrusion detection systems (IDSs) can detect and respond to various attacks. However, they cannot detect all attacks, and they are not capable of predicting future attacks. In this research, we propose an automatic intrusion prediction system (IPS) called E-NIPS (Event-based Network Intrusion Prediction System) that can not only detect attacks but also predict future probable attacks. We have utilized network penetration scenarios partitioned into multiple phases depending on the sequences they follow during network penetrations. Each of these phases consists of attack classes that are precursors to attack classes of the next phase. An attack class is a set of attacks that have same the objectives, categorized to generalize network penetration scenarios and to reduce the burden on the prediction engine during intrusion alerts correlation and prediction tasks. Future attacks are predicted based on the attack classes detected in an earlier phase of a penetration scenario. Automatic intrusion prediction provides little but very crucial time required for fortifying networks against attacks, warns network administrators about possible attacks, and reduces the damage caused due to attacks. In this paper, we describe the architecture, operation, and implementation of E-NIPS. The prototype implementation is evaluated based on some of the most commonly occurring network penetration scenarios. The experimental results show that the prototype automatically provides useful information about the occurrence of future attack events.
引用
收藏
页码:37 / +
页数:4
相关论文
共 50 条
  • [1] Design of Event-Based Intrusion Detection System on OpenFlow Network
    Hu, Yung-Li
    Su, Wei-Bing
    Wu, Li-Ying
    Huang, Yennun
    Kuo, Sy-Yen
    [J]. 2013 43RD ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS (DSN), 2013,
  • [2] Research on the Prediction System of Event Attendance in an Event-Based Social Network
    Lan, Tianming
    Guo, Lei
    Li, Xiaofei
    Chen, Guangfu
    [J]. WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2022, 2022
  • [3] Sequential pattern analysis for event-based intrusion detection
    Nisha, T.N.
    Pramod, Dhanya
    [J]. International Journal of Information and Computer Security, 2019, 11 (4-5) : 476 - 492
  • [4] Efficient Event-based Intrusion Monitoring using Probabilistic Distributions
    Ganan, F. J.
    Sanchez-Diaz, J. A.
    Tapia, R.
    Martinez-de Dios, J. R.
    Ollero, A.
    [J]. 2022 IEEE INTERNATIONAL SYMPOSIUM ON SAFETY, SECURITY, AND RESCUE ROBOTICS (SSRR), 2022, : 211 - 216
  • [5] Asynchronous event-based clustering and tracking for intrusion monitoring in UAS
    Rodriguez-Gomez, J. P.
    Gomez Eguiluz, A.
    Martinez-de Dios, J. R.
    Ollero, A.
    [J]. 2020 IEEE INTERNATIONAL CONFERENCE ON ROBOTICS AND AUTOMATION (ICRA), 2020, : 8518 - 8524
  • [6] High performance string matching algorithm for a Network Intrusion Prevention System (NIPS)
    Weinsberg, Yaron
    Tzur-David, Shimrit
    Dolev, Danny
    Anker, Tal
    [J]. HPSR: 2006 WORKSHOP ON HIGH PERFORMANCE SWITCHING AND ROUTING, 2006, : 147 - +
  • [7] Semantic and Event-Based Approach for Link Prediction
    Wohlfarth, Till
    Ichise, Ryutaro
    [J]. PRACTICAL ASPECTS OF KNOWLEDGE MANAGEMENT, PROCEEDINGS, 2008, 5345 : 50 - +
  • [8] Event-based information system models
    Baekgaard, Lars
    [J]. ICEIS 2007: PROCEEDINGS OF THE NINTH INTERNATIONAL CONFERENCE ON ENTERPRISE INFORMATION SYSTEMS: INFORMATION SYSTEMS ANALYSIS AND SPECIFICATION, 2007, : 587 - 590
  • [9] A system for event-based film browsing
    Lehane, Bart
    O'Connor, Noel E.
    Smeaton, Alan F.
    Lee, Hyowon
    [J]. TECHNOLOGIES FOR INTERACTIVE DIGITAL STORYTELLING AND ENTERTAINMENT, PROCEEDINGS, 2006, 4326 : 334 - +
  • [10] Deep Convolutional Network: an Event-based approach
    Gigena Ivanovich, D.
    Rodriguez, N.
    Pasciaroni, A.
    Julian, P.
    [J]. 2021 ARGENTINE CONFERENCE ON ELECTRONICS (CAE 2021), 2021, : 50 - 54