首页> 外文会议>2011 24th Canadian Conference on Electrical and Computer Engineering >Emerging threats, risks and mitigation strategies in network forensics
【24h】

Emerging threats, risks and mitigation strategies in network forensics

机译:网络取证中的新兴威胁,风险和缓解策略

获取原文

摘要

Sophisticated intrusions are evolving everyday. Hence, requirements are changing towards computer systems that provide more robust solutions. However, new issues, bugs, threats and vulnerabilities are unavoidably introduced into the market each time a new product is designed to meet users' specifications. For these reasons, Vendors, research community, network forensics professionals and other users of Network Intrusion Detection Systems write tons of detection rules to maximally detect attacks. Despite these, numerous attacks still evade intrusion detectors because of insufficient evidence to expose the emerging threats and risks in the usage of intrusion detection technology. Thus, this paper presents a critical review of these problems. The review provides useful guidelines that can be used to enhance efficacy of intrusion detection system and to achieve high returns on investment.
机译:复杂的入侵每天都在发展。因此,对提供更强大解决方案的计算机系统的要求正在发生变化。但是,每次设计新产品以满足用户要求时,不可避免地会向市场引入新问题,漏洞,威胁和漏洞。由于这些原因,供应商,研究团体,网络取证专业人员和网络入侵检测系统的其他用户编写了大量的检测规则,以最大程度地检测攻击。尽管如此,由于缺乏足够的证据来揭露使用入侵检测技术的新出现的威胁和风险,仍然有许多攻击逃避了入侵检测器。因此,本文提出了对这些问题的批判性评论。该评论提供了有用的指南,可用于增强入侵检测系统的效率并实现高投资回报。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号