{"title":"IDS 3G — Third generation for intrusion detection: Applying forecasts and return on security investment to cope with unwanted traffic","authors":"E. Pontes, A. Guelfi","doi":"10.1109/ICITST.2009.5402622","DOIUrl":null,"url":null,"abstract":"The methods for Intrusion Detection Systems (IDS) are based on identification and prevention of attacks and threats to computer systems, but there are few studies concerning forecasting approaches. Similarly to other sciences (e.g. seismology, meteorology, and economics) in which extent efforts are done for forecasts, trend analysis could also be employed in information security field. The aim of this paper is to present the challenges in employing forecasting approaches which could be aggregated to traditional ROSI techniques in IDS. In this study, trend analysis is based on moving averages and Fibonacci sequence. Tests applied upon two datasets (DARPA, KDD) indicate that the applied techniques define incidents trends; therefore, forecasting approach may be complementary to ROSI methods.","PeriodicalId":251169,"journal":{"name":"2009 International Conference for Internet Technology and Secured Transactions, (ICITST)","volume":"23 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2009-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"3","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2009 International Conference for Internet Technology and Secured Transactions, (ICITST)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICITST.2009.5402622","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 3
Abstract
The methods for Intrusion Detection Systems (IDS) are based on identification and prevention of attacks and threats to computer systems, but there are few studies concerning forecasting approaches. Similarly to other sciences (e.g. seismology, meteorology, and economics) in which extent efforts are done for forecasts, trend analysis could also be employed in information security field. The aim of this paper is to present the challenges in employing forecasting approaches which could be aggregated to traditional ROSI techniques in IDS. In this study, trend analysis is based on moving averages and Fibonacci sequence. Tests applied upon two datasets (DARPA, KDD) indicate that the applied techniques define incidents trends; therefore, forecasting approach may be complementary to ROSI methods.