Skip to main navigation Skip to search Skip to main content

SCENARIO-BASED THREAT DETECTION AND ATTACK ANALYSIS

  • Pi-Cheng Hsiu
  • , Chin-Fu Kuo
  • , Tei-Wei Kuo
  • , Eric Y. T. Juan

Research output: Chapters, Conference Papers, Creative and Literary WorksRGC 32 - Refereed conference paper (with host publication)peer-review

Abstract

This paper targets two essential issues in intrusion detection system designs: the optimization of rule selection and the attack discovery in attack analysis. A scenario-based approach is proposed to correlate malicious packets and to intelligently select intrusion detection rules to fire. We propose algorithms for rule selection and attack scenario identification. Potential threats and their relationship for a gateway and web-server applications are explored as an example in the study. The proposed algorithms are implemented over Snort, a signature-based intrusion detection system, for which we have some encouraging performance evaluation results.
Original languageEnglish
Title of host publicationProceedings - 39th Annual 2005 International Carnahan Conference on Security Technology
DOIs
Publication statusPublished - Oct 2005
Externally publishedYes
Event39th Annual International Carnahan Conference on Security Technology (CCST'05) - Las Palmos, Spain
Duration: 11 Oct 200514 Oct 2005

Publication series

NameProceedings - International Carnahan Conference on Security Technology
ISSN (Print)1071-6572

Conference

Conference39th Annual International Carnahan Conference on Security Technology (CCST'05)
PlaceSpain
CityLas Palmos
Period11/10/0514/10/05

Fingerprint

Dive into the research topics of 'SCENARIO-BASED THREAT DETECTION AND ATTACK ANALYSIS'. Together they form a unique fingerprint.

Cite this