首页> 外文会议>International Conference on Computer, Networks and Communication Engineering >A Framework of Event-Driven Detection System for Intricate Network Threats
【24h】

A Framework of Event-Driven Detection System for Intricate Network Threats

机译:用于复杂网络威胁的事件驱动检测系统框架

获取原文

摘要

As the network threats nowadays turn to be more intricate and diversiform, traditional intrusion detection methods are facing with the challenges of lacking flexibility because that they are just code-actual. This paper summarizes the common correlating features exhibited by the network events from the perspective of the detector, and proposes a detection framework which can be used to detect various network threats. After having a static scanning of the threats pattern library, it loads and initials the data structure of threat behaviors, and then utilizes the scheme of event driven to deal with the network event streams. Finally, it logs and calls the related function to query the threat behavior states. The formalization analysis shows that this framework has high flexibility and expansibility to adapt to the evolvement of network threat behaviors.
机译:随着现在的网络威胁现在转向更复杂和多样化,传统的入侵检测方法面临着缺乏灵活性的挑战,因为它们只是代码实际。本文总结了网络事件从检测器的角度展示的共同关联特征,并提出了一种可用于检测各种网络威胁的检测框架。在具有静态扫描威胁模式库之后,它加载并缩写威胁行为的数据结构,然后利用驱动的事件方案来处理网络事件流。最后,它会记录并调用相关函数来查询威胁行为状态。形式化分析表明,该框架具有很高的灵活性和可扩展性,以适应网络威胁行为的演变。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号