Time Based Intrusion Detection on Fast Attack for Network Intrusion Detection System

In recent years network attack are easily launch since the tools to execute the attack are freely available on the Internet. Even the script kiddies can initiate a sophisticated attack with just a basic knowledge on network and software technology. To overcome this matter, Intrusion Detection S...

Full description

Saved in:
Bibliographic Details
Main Authors: Abdollah, M. F., Mas'ud, M. Z., Sahib, S., Yusof, R., Selamat, S. R., Yaacub, A. H.
Format: Conference or Workshop Item
Language:en
Published: 2010
Subjects:
Online Access:http://eprints.utem.edu.my/id/eprint/193/1/4177a148-time_based_ids_on_fast_attack_NIDS.pdf
http://eprints.utem.edu.my/id/eprint/193/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1832715940872060928
author Abdollah, M. F.
Mas'ud, M. Z.
Sahib, S.
Yusof, R.
Selamat, S. R.
Yaacub, A. H.
author_facet Abdollah, M. F.
Mas'ud, M. Z.
Sahib, S.
Yusof, R.
Selamat, S. R.
Yaacub, A. H.
author_sort Abdollah, M. F.
building UTEM Library
collection Institutional Repository
content_provider Universiti Teknikal Malaysia Melaka
content_source UTEM Institutional Repository
continent Asia
country Malaysia
description In recent years network attack are easily launch since the tools to execute the attack are freely available on the Internet. Even the script kiddies can initiate a sophisticated attack with just a basic knowledge on network and software technology. To overcome this matter, Intrusion Detection System (IDS) has been used as a vital instrument in defending the network from this malicious activity. With the ability to analyze network traffic and recognize incoming and ongoing network attack, majority of network administrator has turn to IDS to help them in detecting anomalies in network traffic. The gathering of information and analysis on the anomalies activity can be classified into fast and slow attack. Since fast attack activity make a connection in few second and uses a large amount of packet, detecting this early connection provide the administrator one step ahead in deflecting further damages towards the network infrastructure. This paper describes IDS that detects fast attack intrusion using time based detection method. The time based detection method calculates the statistic of the frequency event which occurs between one second time intervals for each connection made to a host thus providing the crucial information in detecting fast attack.
format Conference or Workshop Item
id my.utem.eprints-193
institution Universiti Teknikal Malaysia Melaka
language en
publishDate 2010
record_format eprints
spelling my.utem.eprints-1932015-05-28T02:17:13Z http://eprints.utem.edu.my/id/eprint/193/ Time Based Intrusion Detection on Fast Attack for Network Intrusion Detection System Abdollah, M. F. Mas'ud, M. Z. Sahib, S. Yusof, R. Selamat, S. R. Yaacub, A. H. Q Science (General) In recent years network attack are easily launch since the tools to execute the attack are freely available on the Internet. Even the script kiddies can initiate a sophisticated attack with just a basic knowledge on network and software technology. To overcome this matter, Intrusion Detection System (IDS) has been used as a vital instrument in defending the network from this malicious activity. With the ability to analyze network traffic and recognize incoming and ongoing network attack, majority of network administrator has turn to IDS to help them in detecting anomalies in network traffic. The gathering of information and analysis on the anomalies activity can be classified into fast and slow attack. Since fast attack activity make a connection in few second and uses a large amount of packet, detecting this early connection provide the administrator one step ahead in deflecting further damages towards the network infrastructure. This paper describes IDS that detects fast attack intrusion using time based detection method. The time based detection method calculates the statistic of the frequency event which occurs between one second time intervals for each connection made to a host thus providing the crucial information in detecting fast attack. 2010-09 Conference or Workshop Item PeerReviewed application/pdf en http://eprints.utem.edu.my/id/eprint/193/1/4177a148-time_based_ids_on_fast_attack_NIDS.pdf Abdollah, M. F. and Mas'ud, M. Z. and Sahib, S. and Yusof, R. and Selamat, S. R. and Yaacub, A. H. (2010) Time Based Intrusion Detection on Fast Attack for Network Intrusion Detection System. In: 2010 Second International Conference on Network Applications, Protocols and Services, 22-23 September 2010, Holiday Villa Hotel, Kedah.
spellingShingle Q Science (General)
Abdollah, M. F.
Mas'ud, M. Z.
Sahib, S.
Yusof, R.
Selamat, S. R.
Yaacub, A. H.
Time Based Intrusion Detection on Fast Attack for Network Intrusion Detection System
title Time Based Intrusion Detection on Fast Attack for Network Intrusion Detection System
title_full Time Based Intrusion Detection on Fast Attack for Network Intrusion Detection System
title_fullStr Time Based Intrusion Detection on Fast Attack for Network Intrusion Detection System
title_full_unstemmed Time Based Intrusion Detection on Fast Attack for Network Intrusion Detection System
title_short Time Based Intrusion Detection on Fast Attack for Network Intrusion Detection System
title_sort time based intrusion detection on fast attack for network intrusion detection system
topic Q Science (General)
url http://eprints.utem.edu.my/id/eprint/193/1/4177a148-time_based_ids_on_fast_attack_NIDS.pdf
http://eprints.utem.edu.my/id/eprint/193/
url_provider http://eprints.utem.edu.my/