【24h】

A Distributed and Privacy-Preserving Method for Network Intrusion Detection

机译:一种用于网络入侵检测的分布式隐私保护方法

获取原文

摘要

Organizations security becomes increasingly more difficult to obtain due to the fact that information technology and networking resources are dispersed across organizations. Network intrusion attacks are more and more difficult to detect even if the most sophisticated security tools are used. To address this problem, researchers and vendors have proposed alert correlation, an analysis process that takes the events produced by the monitoring components and produces compact reports on the security status of the organization under monitoring. Centralized solutions imply to gather from distributed resources by a third party the global state of the network in order to evaluate risks of attacks but neglect the honest but curious behaviors. In this paper, we focus on this issue and propose a set of solutions able to give a coarse or a fine grain global state depending on the system needs and on the privacy level requested by the involved organizations.
机译:由于信息技术和网络资源分散在组织中,组织安全性变得越来越难以获得。即使使用最复杂的安全工具,网络入侵攻击越来越难以检测。为了解决这个问题,研究人员和供应商已经提出了警报相关性,一个分析过程,它采用监控组件产生的事件,并在监控下生产关于组织的安全状态的紧凑报告。集中式解决方案意味着通过第三方通过第三方来从分布式资源收集网络,以评估攻击的风险,但忽视了诚实但好奇的行为。在本文中,我们专注于此问题,并提出了一套能够根据系统需求和所涉及的组织要求的隐私水平提供粗糙或粮食全球州的一套解决方案。

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号