【24h】

A flow based method to detect penetration

机译:基于流的检测渗透的方法

获取原文

摘要

With the rapid expansion of the Internet, network security has become more and more important. IDS (Intrusion Detection System) is an important technology coping network attacks and is of two main types: network based (NIDS) and host based (HIDS). In this paper, we propose the conception of NFPPB (Network Flow Patterns of Penetrating Behavior) to network vulnerable ports and design a NIDS algorithm to detect infiltration behaviors of attacker. Essentially, NFPPB is a set of metrics calculated by network activities exploiting the vulnerabilities of hosts. The paper investigates choosing, generation and comparison of NFPPB metrics. Experiments show that the method is effective and with high efficiency. At last, the paper addresses the future direction and the points that need to be improved.
机译:随着Internet的迅速发展,网络安全变得越来越重要。 IDS(入侵检测系统)是一种应对网络攻击的重要技术,分为两种主要类型:基于网络的(NIDS)和基于主机的(HIDS)。在本文中,我们提出了NFPPB(渗透行为的网络流模式)的概念来对易受攻击的端口进行网络连接,并设计了一种NIDS算法来检测攻击者的渗透行为。本质上,NFPPB是由网络活动利用主机漏洞计算得出的一组指标。本文研究了NFPPB指标的选择,生成和比较。实验表明,该方法有效,高效。最后,本文探讨了未来的方向和需要改进的地方。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号