Anomaly intrusion detection based on fuzzy logic and data mining

Intrusion Detection Systems are increasingly a key part of systems defense. Various approaches to Intrusion Detection are currently being used, but they are relatively ineffective. Artificial Intelligence plays a driving role in security services. This paper proposes a dynamic model Intelligent Intr...

Penerangan Penuh

Disimpan dalam:
Butiran Bibliografi
Pengarang-pengarang Utama: Idris, Norbik Bashah, Shanmugam, Bharanidharan
Format: Conference or Workshop Item
Diterbitkan: 2006
Subjek-subjek:
Capaian Atas Talian:http://eprints.utm.my/24822/
http://eprints.utm.my/24822/
Penanda-penanda: Tambah Penanda
Tiada Penanda, Jadilah orang pertama menanda rekod ini!
Penerangan
Ringkasan:Intrusion Detection Systems are increasingly a key part of systems defense. Various approaches to Intrusion Detection are currently being used, but they are relatively ineffective. Artificial Intelligence plays a driving role in security services. This paper proposes a dynamic model Intelligent Intrusion Detection System, based on specific AI approach for intrusion detection. The techniques that are being investigated includes neural networks and fuzzy logic with network profiling, which uses simple data mining techniques to process the network data. The proposed system is a hybrid system that combines anomaly and misuse detection. Simple Fuzzy rules, allow us to construct if-then rules that reflect common ways of describing security attacks. Suspicious intrusions can be traced back to its original source path and any traffic from that particular source will be redirected back to them in future. Both network traffic and system audit data are used as inputs for both the systems.