首页> 外文期刊>Computer Communications >A hybrid layered architecture for detection and analysis of network based Zero-day attack
【24h】

A hybrid layered architecture for detection and analysis of network based Zero-day attack

机译:用于检测和分析基于网络的零日攻击的混合分层体系结构

获取原文
获取原文并翻译 | 示例

摘要

A Zero-day (0-day) susceptibility is an undisclosed computer software or application vulnerability that could be exploited to affect hardware, applications, data, or networks negatively. The main objectives of a Zero-day attack are for hackers or attackers to be able steal sensitive information, legal documents, enterprises data, and other information. We have analyzed the lifecycle of Zero-day vulnerabilities and different detection methodologies. In this paper, we propose a novel hybrid layered architecture framework for Zero-day attack detection and analysis in real-time, which is based on statistics, signatures, and behavior techniques. To enhance our architecture, we used an SVM approach in order to provide unsupervised learning and minimize false alarm detection capabilities. In this paper, we also present the different experimental comparisons we made between our approach and various standard parameters and our result shows a high detection rate of Zero-day attacks (C) 2017 Published by Elsevier B.V.
机译:零日(0天)敏感性是未公开的计算机软件或应用程序漏洞,可被利用来对硬件,应用程序,数据或网络产生负面影响。零日攻击的主要目标是使黑客或攻击者能够窃取敏感信息,法律文档,企业数据和其他信息。我们分析了零日漏洞的生命周期和不同的检测方法。在本文中,我们提出了一种基于统计,签名和行为技术的实时零日攻击检测和分析的新型混合分层架构框架。为了增强我们的体系结构,我们使用了SVM方法来提供无监督的学习并最小化错误警报检测功能。在本文中,我们还介绍了我们的方法与各种标准参数之间进行的不同实验比较,结果表明Elsevier B.V发布的零日攻击(C)2017的检测率很高。

著录项

  • 来源
    《Computer Communications》 |2017年第1期|100-106|共7页
  • 作者单位

    Seoul Natl Univ Sci & Technol, SeoulTech, Dept Comp Sci & Engn, Seoul 01811, South Korea;

    Seoul Natl Univ Sci & Technol, SeoulTech, Dept Comp Sci & Engn, Seoul 01811, South Korea;

    Seoul Natl Univ Sci & Technol, SeoulTech, Dept Comp Sci & Engn, Seoul 01811, South Korea;

    Seoul Natl Univ Sci & Technol, SeoulTech, Dept Comp Sci & Engn, Seoul 01811, South Korea;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    Zero-day attacks; Exploit; Anomaly behavior; Support vector machine;

    机译:零时差攻击;利用;异常行为;支持向量机;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号