{"title":"链接分析方法改进误用IDS中碎片攻击的检测","authors":"O. Ben Ahmed, Z. Choukair","doi":"10.1109/COMNET.2009.5373571","DOIUrl":null,"url":null,"abstract":"Intrusion detection system (IDS) is a security technology that attempts to identify and isolate “Intrusions” against computer systems. The major problem of IDS is the vulnerability to fragment attacks. For this problem we propose a new approach (ARD-FA : Association Rules to Detect Fragment Attack) using data mining techniques of links analyses. We develop this approach and show some improvement in managing the problem.","PeriodicalId":185933,"journal":{"name":"2009 First International Conference on Communications and Networking","volume":"84 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2009-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"3","resultStr":"{\"title\":\"Link analysis approach to improve detection of fragmentation attacks in Misuse IDS\",\"authors\":\"O. Ben Ahmed, Z. Choukair\",\"doi\":\"10.1109/COMNET.2009.5373571\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Intrusion detection system (IDS) is a security technology that attempts to identify and isolate “Intrusions” against computer systems. The major problem of IDS is the vulnerability to fragment attacks. For this problem we propose a new approach (ARD-FA : Association Rules to Detect Fragment Attack) using data mining techniques of links analyses. We develop this approach and show some improvement in managing the problem.\",\"PeriodicalId\":185933,\"journal\":{\"name\":\"2009 First International Conference on Communications and Networking\",\"volume\":\"84 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2009-11-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"3\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2009 First International Conference on Communications and Networking\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/COMNET.2009.5373571\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2009 First International Conference on Communications and Networking","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/COMNET.2009.5373571","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 3
摘要
入侵检测系统(IDS)是一种试图识别和隔离针对计算机系统的“入侵”的安全技术。IDS的主要问题是容易受到碎片攻击。针对这一问题,我们提出了一种利用链接分析的数据挖掘技术来检测碎片攻击的新方法(ARD-FA: Association Rules to Detect Fragment Attack)。我们开发了这种方法,并在管理问题方面显示出一些改进。
Link analysis approach to improve detection of fragmentation attacks in Misuse IDS
Intrusion detection system (IDS) is a security technology that attempts to identify and isolate “Intrusions” against computer systems. The major problem of IDS is the vulnerability to fragment attacks. For this problem we propose a new approach (ARD-FA : Association Rules to Detect Fragment Attack) using data mining techniques of links analyses. We develop this approach and show some improvement in managing the problem.