摘要
入侵检测系统(IDS)是目前研究的一个热点,IDS从攻击者的角度来看待系统安全,已经成为安全体系结构中不可缺少的一个环节。但是目前的IDS检测技术还不够成熟,存在一些方法使得攻击者可能绕开IDS的检测,文章探讨了一种所谓的隐秘攻击技术,这种方法用以攻击传统的基于关键字匹配的IDS。然后从如何检测隐秘攻击的角度出发讨论了IDS的安全体系结构。
Intrusion detection is a focus of current research, it looks on system security as attackers, and has become an indispensable component of system security architecture. But the detection technology is not advanced enough, there exists some methods that can evade the detection. This paper introduces a so-called stealthy attack technology, which can be used to attack traditional signature-based IDSs, then it discusses how to detect these stealthy attacks and the architecture design of IDS.
出处
《计算机工程》
CAS
CSCD
北大核心
2003年第2期72-74,95,共4页
Computer Engineering
基金
国家重点基础研究发展规划项目(G1999035801)
国家自然科学基金项目(90104030)