Improving the efficiency of misuse detection

被引:0
|
作者
Meier, M [1 ]
Schmerl, S [1 ]
Koenig, H [1 ]
机构
[1] Brandenburg Tech Univ Cottbus, Dept Comp Sci, D-03013 Cottbus, Germany
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In addition to preventive mechanisms intrusion detection systems (IDS) are an important instrument to protect computer systems. Most IDSs used today realize the misuse detection approach. These systems analyze monitored events for occurrences of defined patterns (signatures), which indicate security violations. Up to now only little attention has been paid to the analysis efficiency of these systems. In particular for systems that are able to detect complex, multi-step attacks not much work towards performance optimizations has been done. This paper discusses analysis techniques of IDSs used today and introduces a couple of optimizing strategies, which exploit structural properties of signatures to increase the analyze efficiency. A prototypical implementation has been used to evaluate these strategies experimentally and to compare them with currently deployed misuse detection techniques. Measurements showed that significant performance improvements can be gained by using the proposed optimizing strategies. The effects of each optimization strategy on the analysis efficiency are discussed in detail.
引用
收藏
页码:188 / 205
页数:18
相关论文
共 50 条
  • [41] An innovative law for improving the heterodyne efficiency of heterodyne detection in atmospheric turbulence
    Tan, Zhen Kun
    Wang, Jiao
    Kong, Ying Xiu
    Lei, Si Chen
    Li, Yao
    [J]. APPLIED PHYSICS B-LASERS AND OPTICS, 2022, 128 (05):
  • [42] Improving classifier training efficiency for automatic cyberbullying detection with Feature Density
    Eronen, Juuso
    Ptaszynski, Michal
    Masui, Fumito
    Smywinski-Pohl, Aleksander
    Leliwa, Gniewosz
    Wroczynski, Michal
    [J]. INFORMATION PROCESSING & MANAGEMENT, 2021, 58 (05)
  • [43] Improving the Efficiency of Grammatical Error Correction with Erroneous Span Detection and Correction
    Chen, Mengyun
    Ge, Tao
    Zhang, Xingxing
    Wei, Furu
    Zhou, Ming
    [J]. PROCEEDINGS OF THE 2020 CONFERENCE ON EMPIRICAL METHODS IN NATURAL LANGUAGE PROCESSING (EMNLP), 2020, : 7162 - 7169
  • [44] Improving the Efficiency and Robustness of Deepfakes Detection through Precise Geometric Features
    Sun, Zekun
    Han, Yujie
    Hua, Zeyu
    Ruan, Na
    Jia, Weijia
    [J]. 2021 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION, CVPR 2021, 2021, : 3608 - 3617
  • [45] Improving the Accuracy and Efficiency of Identity-by-Descent Detection in Population Data
    Browning, Brian L.
    Browning, Sharon R.
    [J]. GENETICS, 2013, 194 (02): : 459 - +
  • [46] Improving OR Efficiency
    Vassell, Patricia
    [J]. AORN JOURNAL, 2016, 104 (02) : 122 - 129
  • [47] Improving efficiency
    Gavin Armstrong
    [J]. Nature Chemistry, 2012, 4 (1) : 4 - 5
  • [48] Improving efficiency
    Borman, S
    [J]. CHEMICAL & ENGINEERING NEWS, 2006, 84 (25) : 56 - +
  • [49] Improving care for depression in patients with comorbid substance misuse
    Watkins, KE
    Paddock, SM
    Zhang, LL
    Wells, KB
    [J]. AMERICAN JOURNAL OF PSYCHIATRY, 2006, 163 (01): : 125 - 132
  • [50] Higen: An intelligent system for misuse detection
    Chen, R
    Gao, J
    Hua, C
    [J]. PROCEEDINGS OF THE 2004 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-7, 2004, : 2775 - 2778