Enhancing community SQL injection rule in intrusion detection system using snort with email notifications / Nur Athirah Noor Mohamad, Noor Ashitah Abu Othman and Mohd Hafifi Mohd Supir
This project focuses on enhancing the precision and recall rates of community-based intrusion detection systems, specifically targeting SQL injection attacks within the context of Snort. The study involves the integration of modified rules employing PCRE (Perl Compatible Regular Expressions) and fas...
Saved in:
Main Authors: | , , |
---|---|
Format: | Article |
Language: | English |
Published: |
College of Computing, Informatics, and Mathematics
2024
|
Subjects: | |
Online Access: | https://ir.uitm.edu.my/id/eprint/105867/1/105867.pdf https://ir.uitm.edu.my/id/eprint/105867/ https://fskmjebat.uitm.edu.my/pcmj/ |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
id |
my.uitm.ir.105867 |
---|---|
record_format |
eprints |
spelling |
my.uitm.ir.1058672025-02-18T17:43:33Z https://ir.uitm.edu.my/id/eprint/105867/ Enhancing community SQL injection rule in intrusion detection system using snort with email notifications / Nur Athirah Noor Mohamad, Noor Ashitah Abu Othman and Mohd Hafifi Mohd Supir Noor Mohamad, Nur Athirah Abu Othman, Noor Ashitah Mohd Supir, Mohd Hafifi Integer programming This project focuses on enhancing the precision and recall rates of community-based intrusion detection systems, specifically targeting SQL injection attacks within the context of Snort. The study involves the integration of modified rules employing PCRE (Perl Compatible Regular Expressions) and fast pattern matching to improve the accuracy and performance of the intrusion detection system. Experimental results demonstrate a notable reduction in false positives and a perfect recall rate, showcasing the efficacy of the enhanced rules. The virtualized testing environment, comprising a Snort-protected server, a simulated attacker using Kali Linux and Metasploitable 2, and a vulnerable system facilitates a thorough evaluation of Snort's response to cyber threats. While acknowledging limitations and the controlled nature of the testing, this research emphasizes the importance of leveraging advanced technologies to fortify intrusion detection systems against evolving cybersecurity challenges. The incorporation of PCRE and fast pattern matching stands as a significant contribution to improving rule matching accuracy and overall system efficiency in the dynamic landscape of cybersecurity. College of Computing, Informatics, and Mathematics 2024-10 Article NonPeerReviewed text en https://ir.uitm.edu.my/id/eprint/105867/1/105867.pdf Enhancing community SQL injection rule in intrusion detection system using snort with email notifications / Nur Athirah Noor Mohamad, Noor Ashitah Abu Othman and Mohd Hafifi Mohd Supir. (2024) Progress in Computer and Mathematics Journal (PCMJ) <https://ir.uitm.edu.my/view/publication/Progress_in_Computer_and_Mathematics_Journal_=28PCMJ=29/>, 1. pp. 124-137. ISSN 3030-6728 (Submitted) https://fskmjebat.uitm.edu.my/pcmj/ |
institution |
Universiti Teknologi Mara |
building |
Tun Abdul Razak Library |
collection |
Institutional Repository |
continent |
Asia |
country |
Malaysia |
content_provider |
Universiti Teknologi Mara |
content_source |
UiTM Institutional Repository |
url_provider |
http://ir.uitm.edu.my/ |
language |
English |
topic |
Integer programming |
spellingShingle |
Integer programming Noor Mohamad, Nur Athirah Abu Othman, Noor Ashitah Mohd Supir, Mohd Hafifi Enhancing community SQL injection rule in intrusion detection system using snort with email notifications / Nur Athirah Noor Mohamad, Noor Ashitah Abu Othman and Mohd Hafifi Mohd Supir |
description |
This project focuses on enhancing the precision and recall rates of community-based intrusion detection systems, specifically targeting SQL injection attacks within the context of Snort. The study involves the integration of modified rules employing PCRE (Perl Compatible Regular Expressions) and fast pattern matching to improve the accuracy and performance of the intrusion detection system. Experimental results demonstrate a notable reduction in false positives and a perfect recall rate, showcasing the efficacy of the enhanced rules. The virtualized testing environment, comprising a Snort-protected server, a simulated attacker using Kali Linux and Metasploitable 2, and a vulnerable system facilitates a thorough evaluation of Snort's response to cyber threats. While acknowledging limitations and the controlled nature of the testing, this research emphasizes the importance of leveraging advanced technologies to fortify intrusion detection systems against evolving cybersecurity challenges. The incorporation of PCRE and fast pattern matching stands as a significant contribution to improving rule matching accuracy and overall system efficiency in the dynamic landscape of cybersecurity. |
format |
Article |
author |
Noor Mohamad, Nur Athirah Abu Othman, Noor Ashitah Mohd Supir, Mohd Hafifi |
author_facet |
Noor Mohamad, Nur Athirah Abu Othman, Noor Ashitah Mohd Supir, Mohd Hafifi |
author_sort |
Noor Mohamad, Nur Athirah |
title |
Enhancing community SQL injection rule in intrusion detection system using snort with email notifications / Nur Athirah Noor Mohamad, Noor Ashitah Abu Othman and Mohd Hafifi Mohd Supir |
title_short |
Enhancing community SQL injection rule in intrusion detection system using snort with email notifications / Nur Athirah Noor Mohamad, Noor Ashitah Abu Othman and Mohd Hafifi Mohd Supir |
title_full |
Enhancing community SQL injection rule in intrusion detection system using snort with email notifications / Nur Athirah Noor Mohamad, Noor Ashitah Abu Othman and Mohd Hafifi Mohd Supir |
title_fullStr |
Enhancing community SQL injection rule in intrusion detection system using snort with email notifications / Nur Athirah Noor Mohamad, Noor Ashitah Abu Othman and Mohd Hafifi Mohd Supir |
title_full_unstemmed |
Enhancing community SQL injection rule in intrusion detection system using snort with email notifications / Nur Athirah Noor Mohamad, Noor Ashitah Abu Othman and Mohd Hafifi Mohd Supir |
title_sort |
enhancing community sql injection rule in intrusion detection system using snort with email notifications / nur athirah noor mohamad, noor ashitah abu othman and mohd hafifi mohd supir |
publisher |
College of Computing, Informatics, and Mathematics |
publishDate |
2024 |
url |
https://ir.uitm.edu.my/id/eprint/105867/1/105867.pdf https://ir.uitm.edu.my/id/eprint/105867/ https://fskmjebat.uitm.edu.my/pcmj/ |
_version_ |
1825165082677477376 |
score |
13.239859 |