Algorithm to detect intrusions using multi layer signature based model

The Internet and computer networks are exposed to an increasing number of security threats. With new types of attacks appearing continually, developing flexible and adaptive security oriented approaches is a severe challenge. In recent years, intrusion detection system (IDS) had been developed as a...

Full description

Saved in:
Bibliographic Details
Main Authors: Uddin, Mueen, Abdul Rahman, Azizah, Memon, J. Amshed, Uddin, Naeem
Format: Article
Published: 2012
Subjects:
Online Access:http://eprints.utm.my/id/eprint/46572/
Tags: Add Tag
No Tags, Be the first to tag this record!
id my.utm.46572
record_format eprints
spelling my.utm.465722017-09-14T06:23:30Z http://eprints.utm.my/id/eprint/46572/ Algorithm to detect intrusions using multi layer signature based model Uddin, Mueen Abdul Rahman, Azizah Memon, J. Amshed Uddin, Naeem Q Science The Internet and computer networks are exposed to an increasing number of security threats. With new types of attacks appearing continually, developing flexible and adaptive security oriented approaches is a severe challenge. In recent years, intrusion detection system (IDS) had been developed as a new approach system to defend networking systems, which properly combines the firewall technique with the intrusion detection. These systems try to detect attacks as they occur or after the attacks took place. IDSs collect network traffic information from some point on the network or computer system and then use this information to secure the network.In this context, signature-based network intrusion detection techniques are a valuable technology to protect target systems and networks against malicious activities.Signature based detection is the most extensively used threat detection technique for Intrusion Detection Systems (IDS). One of the foremost challenges for signature-based IDS systems is how to keep up with large volume of incoming traffic when each packet needs to be compared with every signature in the database. When an IDS cannot keep up with the traffic flood, all it can do is to drop packets, therefore, may miss potential attacks. This paper proposes a new model called Dynamic Multi-Layer Signature based IDS using Mobile Agents, which can detect imminent threats with very high success rate by dynamically and automatically creating and using small and efficient multiple databases, and at the same time, provide mechanism to update these small signature databases at regular intervals using Mobile Agents. 2012 Article PeerReviewed Uddin, Mueen and Abdul Rahman, Azizah and Memon, J. Amshed and Uddin, Naeem (2012) Algorithm to detect intrusions using multi layer signature based model. Journal of Applied Sciences Research, 8 (8). pp. 4457-4466. ISSN 1816-157X
institution Universiti Teknologi Malaysia
building UTM Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider Universiti Teknologi Malaysia
content_source UTM Institutional Repository
url_provider http://eprints.utm.my/
topic Q Science
spellingShingle Q Science
Uddin, Mueen
Abdul Rahman, Azizah
Memon, J. Amshed
Uddin, Naeem
Algorithm to detect intrusions using multi layer signature based model
description The Internet and computer networks are exposed to an increasing number of security threats. With new types of attacks appearing continually, developing flexible and adaptive security oriented approaches is a severe challenge. In recent years, intrusion detection system (IDS) had been developed as a new approach system to defend networking systems, which properly combines the firewall technique with the intrusion detection. These systems try to detect attacks as they occur or after the attacks took place. IDSs collect network traffic information from some point on the network or computer system and then use this information to secure the network.In this context, signature-based network intrusion detection techniques are a valuable technology to protect target systems and networks against malicious activities.Signature based detection is the most extensively used threat detection technique for Intrusion Detection Systems (IDS). One of the foremost challenges for signature-based IDS systems is how to keep up with large volume of incoming traffic when each packet needs to be compared with every signature in the database. When an IDS cannot keep up with the traffic flood, all it can do is to drop packets, therefore, may miss potential attacks. This paper proposes a new model called Dynamic Multi-Layer Signature based IDS using Mobile Agents, which can detect imminent threats with very high success rate by dynamically and automatically creating and using small and efficient multiple databases, and at the same time, provide mechanism to update these small signature databases at regular intervals using Mobile Agents.
format Article
author Uddin, Mueen
Abdul Rahman, Azizah
Memon, J. Amshed
Uddin, Naeem
author_facet Uddin, Mueen
Abdul Rahman, Azizah
Memon, J. Amshed
Uddin, Naeem
author_sort Uddin, Mueen
title Algorithm to detect intrusions using multi layer signature based model
title_short Algorithm to detect intrusions using multi layer signature based model
title_full Algorithm to detect intrusions using multi layer signature based model
title_fullStr Algorithm to detect intrusions using multi layer signature based model
title_full_unstemmed Algorithm to detect intrusions using multi layer signature based model
title_sort algorithm to detect intrusions using multi layer signature based model
publishDate 2012
url http://eprints.utm.my/id/eprint/46572/
_version_ 1643652075071995904
score 13.211869