首页> 外文会议>International Conference on Computational Science and Its Applications(ICCSA 2006) pt.4; 20060508-11; Glasgow(GB) >SPAD: A Session Pattern Anomaly Detector for Pre-alerting Intrusions in Home Network
【24h】

SPAD: A Session Pattern Anomaly Detector for Pre-alerting Intrusions in Home Network

机译:SPAD:用于预报警家庭网络中的入侵的会话模式异常检测器

获取原文
获取原文并翻译 | 示例
获取外文期刊封面目录资料

摘要

In order to prevent the intrusion in network-based information systems effectively, it is necessary to detect the early sign in advance of intrusion. This sort of pre-alerting approach may be classified as an active prevention, since detecting the various forms of hackers' intrusion trials to know the vulnerability of systems is not missed and early cross-checked. The existing network-based anomaly detection algorithms that cope with port-scanning and the network vulnerability scans have some weakness in slow scans and coordinated scans. Therefore, a new concept of pre-alerting algorithm is especially attractive to detect effectively the various forms of abnormal accesses for the trial of intrusion regardless of the intrusion methods. In this paper, we propose a session pattern anomaly detector (SPAD) which detects the abnormal service patterns by comparing them with the ordinary normal service patterns.
机译:为了有效地防止基于网络的信息系统中的入侵,有必要在入侵之前检测早期迹象。这种预报警方法可以归为主动预防,因为不会错过各种形式的黑客入侵试验以了解系统的脆弱性,并且可以进行早期交叉检查。现有的基于网络的异常检测算法(可应对端口扫描和网络漏洞扫描)在慢速扫描和协调扫描中具有某些弱点。因此,一种新的预报警算法概念对于不管入侵方法如何有效地检测各种形式的异常访问以进行入侵试验都特别有吸引力。在本文中,我们提出了一种会话模式异常检测器(SPAD),该检测器通过将异常服务模式与普通正常服务模式进行比较来检测异常服务模式。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号