A Systematic Literature Review on Host-Based Intrusion Detection Systems

With the advancements in computer networks and systems, the number of security vulnerabilities and cyber attacks targeting/using these vulnerabilities continues to increase. Consequently, various intrusion detection systems (IDS) have been developed to detect cyber attacks and ensure information sec...

Full description

Bibliographic Details
Main Authors: Hami Satilmis, Sedat Akleylek, Zaliha Yuce Tok
Format: Article
Language:English
Published: IEEE 2024-01-01
Series:IEEE Access
Subjects:
Online Access:https://ieeexplore.ieee.org/document/10439152/
_version_ 1797296343315644416
author Hami Satilmis
Sedat Akleylek
Zaliha Yuce Tok
author_facet Hami Satilmis
Sedat Akleylek
Zaliha Yuce Tok
author_sort Hami Satilmis
collection DOAJ
description With the advancements in computer networks and systems, the number of security vulnerabilities and cyber attacks targeting/using these vulnerabilities continues to increase. Consequently, various intrusion detection systems (IDS) have been developed to detect cyber attacks and ensure information security. IDSs are categorized into two classes based on the data sources: Network-based intrusion detection system (NIDS) and host-based intrusion detection system (HIDS). In this systematic literature review (SLR), studies are examined that focus on HIDS or propose methods applicable to HIDS, as well as those related to IDSs that can be converted into HIDSs. The studies published between 2020 and 2023 are collected from widely used academic databases through various query statements. Filtering based on specific selection and elimination criteria is undergone by the collected studies, resulting in 21 studies for examination. Subsequently, these studies and their advantages and disadvantages are discussed. In addition, while examining the studies, five research questions are addressed. Finally, the defects, potential areas for improvement, and future research directions related to HIDSs are discussed.
first_indexed 2024-03-07T22:03:16Z
format Article
id doaj.art-72805f5916474587bf7d4a7f0811fb9e
institution Directory Open Access Journal
issn 2169-3536
language English
last_indexed 2024-03-07T22:03:16Z
publishDate 2024-01-01
publisher IEEE
record_format Article
series IEEE Access
spelling doaj.art-72805f5916474587bf7d4a7f0811fb9e2024-02-24T00:01:01ZengIEEEIEEE Access2169-35362024-01-0112272372726610.1109/ACCESS.2024.336700410439152A Systematic Literature Review on Host-Based Intrusion Detection SystemsHami Satilmis0https://orcid.org/0000-0002-6611-7549Sedat Akleylek1https://orcid.org/0000-0001-7005-6489Zaliha Yuce Tok2Department of Computer Engineering, Ondokuz Mayıs University, Samsun, TurkeyDepartment of Computer Engineering, İstinye University, Istanbul, TurkeyASELSAN, Ankara, TurkeyWith the advancements in computer networks and systems, the number of security vulnerabilities and cyber attacks targeting/using these vulnerabilities continues to increase. Consequently, various intrusion detection systems (IDS) have been developed to detect cyber attacks and ensure information security. IDSs are categorized into two classes based on the data sources: Network-based intrusion detection system (NIDS) and host-based intrusion detection system (HIDS). In this systematic literature review (SLR), studies are examined that focus on HIDS or propose methods applicable to HIDS, as well as those related to IDSs that can be converted into HIDSs. The studies published between 2020 and 2023 are collected from widely used academic databases through various query statements. Filtering based on specific selection and elimination criteria is undergone by the collected studies, resulting in 21 studies for examination. Subsequently, these studies and their advantages and disadvantages are discussed. In addition, while examining the studies, five research questions are addressed. Finally, the defects, potential areas for improvement, and future research directions related to HIDSs are discussed.https://ieeexplore.ieee.org/document/10439152/Intrusion detection systemhost-based intrusion detection systeminformation securitymachine learningdeep learning
spellingShingle Hami Satilmis
Sedat Akleylek
Zaliha Yuce Tok
A Systematic Literature Review on Host-Based Intrusion Detection Systems
IEEE Access
Intrusion detection system
host-based intrusion detection system
information security
machine learning
deep learning
title A Systematic Literature Review on Host-Based Intrusion Detection Systems
title_full A Systematic Literature Review on Host-Based Intrusion Detection Systems
title_fullStr A Systematic Literature Review on Host-Based Intrusion Detection Systems
title_full_unstemmed A Systematic Literature Review on Host-Based Intrusion Detection Systems
title_short A Systematic Literature Review on Host-Based Intrusion Detection Systems
title_sort systematic literature review on host based intrusion detection systems
topic Intrusion detection system
host-based intrusion detection system
information security
machine learning
deep learning
url https://ieeexplore.ieee.org/document/10439152/
work_keys_str_mv AT hamisatilmis asystematicliteraturereviewonhostbasedintrusiondetectionsystems
AT sedatakleylek asystematicliteraturereviewonhostbasedintrusiondetectionsystems
AT zalihayucetok asystematicliteraturereviewonhostbasedintrusiondetectionsystems
AT hamisatilmis systematicliteraturereviewonhostbasedintrusiondetectionsystems
AT sedatakleylek systematicliteraturereviewonhostbasedintrusiondetectionsystems
AT zalihayucetok systematicliteraturereviewonhostbasedintrusiondetectionsystems