首页> 外文会议>2016 International Conference on Computing, Analytics and Security Trends >Protego: A passive intrusion detection system for Android smartphones
【24h】

Protego: A passive intrusion detection system for Android smartphones

机译:Protego:适用于Android智能手机的被动入侵检测系统

获取原文
获取原文并翻译 | 示例

摘要

With the proliferation of smartphones, the security threats have correspondingly increased. Although some form of security mechanisms like authentication and encryption have been provided on platforms such as Android, these alone cannot mitigate all the forms of threats. Thus, the need for an intrusion detection system for smartphones has become immensely important. In this project, we capitalize on earlier approaches of host-based intrusion detection systems and behavior-based intrusion detection systems for Android smartphones to design and implement a host-based, behavior-based passive intrusion detection system, Protego, for Android smartphones. There are two versions - static and dynamic, each with its own novel approach. The static version of Protego improves predictive performance by implementing feature reduction, thus increasing classifier accuracy significantly. The novelty of dynamic approach is that it analyzes live traffic with a minimum delay (in the order of milliseconds). This opens up a variety of use cases for our system, especially in the business world where information security on smartphones is of utmost importance. We have illustrated this by also extending Protego to devise a solution for BYOD (bring your own device), a growing trend in the corporate world, by using the IDS to detect other malicious activities like peer-to-peer traffic from torrent clients.
机译:随着智能手机的普及,安全威胁也相应增加。尽管在诸如Android之类的平台上已经提供了某种形式的安全机制,如身份验证和加密,但是仅靠这些机制无法减轻所有形式的威胁。因此,对于智能手机的入侵检测系统的需求变得极为重要。在此项目中,我们利用了针对Android智能手机的基于主机的入侵检测系统和基于行为的入侵检测系统的较早方法,来为Android智能手机设计和实现基于主机,基于行为的被动入侵检测系统Protego。有静态和动态两个版本,每个版本都有其自己的新颖方法。静态版本的Protego通过实现特征缩减来提高预测性能,从而显着提高分类器的准确性。动态方法的新颖性在于它以最小延迟(毫秒级)分析实时流量。这为我们的系统打开了各种用例,尤其是在商业世界中,在智能手机上,信息安全至关重要。我们还通过扩展Protego来设计BYOD(带上自己的设备)解决方案的方法,该解决方案是企业界的一种日益发展的趋势,它通过使用IDS来检测其他恶意活动,例如来自洪流客户端的对等流量。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号