首页>
外国专利>
METHOD AND APPARATUS OF ADAPTIVE AND FLEXIBLE INTRUSION DETECTION SYSTEM FOR P2P BOTNET
METHOD AND APPARATUS OF ADAPTIVE AND FLEXIBLE INTRUSION DETECTION SYSTEM FOR P2P BOTNET
展开▼
机译:P2P僵尸网络自适应和灵活入侵检测系统的方法和装置
展开▼
页面导航
摘要
著录项
相似文献
摘要
An intrusion detection system according to an embodiment proposes an adaptive and flexible intrusion detection method for detection of a P2P botnet. The intrusion detection system may comprise: a collection unit which collects pcap traffic in real time in an environment in which parallel operation is performed in a big data analysis cluster; a parsing unit which extracts features required for detection by parsing the collected pcap traffic; a P2P host detection unit which separates general network traffic and P2P traffic using the extracted features; and a botnet detection unit which detects a P2P botnet from the separate P2P traffic, and blocks the detected P2P botnet.
展开▼