期刊文献+
共找到1篇文章
< 1 >
每页显示 20 50 100
A Multi-Stage Network Anomaly Detection Method for Improving Efficiency and Accuracy
1
作者 Yuji Waizumi Hiroshi Tsunoda +1 位作者 masashi tsuji Yoshiaki Nemoto 《Journal of Information Security》 2012年第1期18-24,共7页
Because of an explosive growth of the intrusions, necessity of anomaly-based Intrusion Detection Systems (IDSs) which are capable of detecting novel attacks, is increasing. Among those systems, flow-based detection sy... Because of an explosive growth of the intrusions, necessity of anomaly-based Intrusion Detection Systems (IDSs) which are capable of detecting novel attacks, is increasing. Among those systems, flow-based detection systems which use a series of packets exchanged between two terminals as a unit of observation, have an advantage of being able to detect anomaly which is included in only some specific sessions. However, in large-scale networks where a large number of communications takes place, analyzing every flow is not practical. On the other hand, a timeslot-based detection systems need not to prepare a number of buffers although it is difficult to specify anomaly communications. In this paper, we propose a multi-stage anomaly detection system which is combination of timeslot-based and flow-based detectors. The proposed system can reduce the number of flows which need to be subjected to flow-based analysis but yet exhibits high detection accuracy. Through experiments using data set, we present the effectiveness of the proposed method. 展开更多
关键词 Network Anomaly Detection Timeslot-Based ANALYSIS Flow-Based ANALYSIS MULTI-STAGE Traffic ANALYSIS FLOW Reduction
下载PDF
上一页 1 下一页 到第
使用帮助 返回顶部