Threshold verification using statistical approach for fast attack detection

Network has grows to a mammoth size and becoming more complex, thus exposing the services it offers towards multiple types of intrusion vulnerabilities.One method to overcome intrusion is by introducing Intrusion Detection System (IDS) for detecting the threat before it can damage the network resou...

Full description

Bibliographic Details
Main Authors: Abdollah, Mohd Faizal, Mas’ud, Mohd Zaki, Sahib@Sahibuddin, Shahrin, Yusof, Robiah, Selamat, Siti Rahayu
Format: Conference or Workshop Item
Language:English
Published: 2009
Subjects:
Online Access:https://repo.uum.edu.my/id/eprint/13468/1/PID50.pdf
_version_ 1825803191328964608
author Abdollah, Mohd Faizal
Mas’ud, Mohd Zaki
Sahib@Sahibuddin, Shahrin
Yusof, Robiah
Selamat, Siti Rahayu
author_facet Abdollah, Mohd Faizal
Mas’ud, Mohd Zaki
Sahib@Sahibuddin, Shahrin
Yusof, Robiah
Selamat, Siti Rahayu
author_sort Abdollah, Mohd Faizal
collection UUM
description Network has grows to a mammoth size and becoming more complex, thus exposing the services it offers towards multiple types of intrusion vulnerabilities.One method to overcome intrusion is by introducing Intrusion Detection System (IDS) for detecting the threat before it can damage the network resources.IDS have the ability to analyze network traffic and recognize incoming and on-going network attack.In detecting intrusion attack, Information gathering on such activity can be classified into fast attack and slow attack.Yet, majority of the current intrusion detection systems do not have the ability to differentiate between these two types of attacks. Early detection of fast attack is very useful in a real time environment; in which it can help the targeted network from further intrusion that could let the intruder to gain access to the vulnerable machine.To address this challenge, this paper introduces a fast attack detection framework that set a threshold value to differentiate between the normal network traffic and abnormal network traffic on the victim perspective. The threshold value is abstract with the help of suitable set of feature used to detect the anomaly in the network. By introducing the threshold value, anomaly based detection can build a complete profile to detect any intrusion threat as well as at the same time reducing it false alarm alert.
first_indexed 2024-07-04T05:52:47Z
format Conference or Workshop Item
id uum-13468
institution Universiti Utara Malaysia
language English
last_indexed 2024-07-04T05:52:47Z
publishDate 2009
record_format eprints
spelling uum-134682015-04-01T03:26:24Z https://repo.uum.edu.my/id/eprint/13468/ Threshold verification using statistical approach for fast attack detection Abdollah, Mohd Faizal Mas’ud, Mohd Zaki Sahib@Sahibuddin, Shahrin Yusof, Robiah Selamat, Siti Rahayu QA76 Computer software Network has grows to a mammoth size and becoming more complex, thus exposing the services it offers towards multiple types of intrusion vulnerabilities.One method to overcome intrusion is by introducing Intrusion Detection System (IDS) for detecting the threat before it can damage the network resources.IDS have the ability to analyze network traffic and recognize incoming and on-going network attack.In detecting intrusion attack, Information gathering on such activity can be classified into fast attack and slow attack.Yet, majority of the current intrusion detection systems do not have the ability to differentiate between these two types of attacks. Early detection of fast attack is very useful in a real time environment; in which it can help the targeted network from further intrusion that could let the intruder to gain access to the vulnerable machine.To address this challenge, this paper introduces a fast attack detection framework that set a threshold value to differentiate between the normal network traffic and abnormal network traffic on the victim perspective. The threshold value is abstract with the help of suitable set of feature used to detect the anomaly in the network. By introducing the threshold value, anomaly based detection can build a complete profile to detect any intrusion threat as well as at the same time reducing it false alarm alert. 2009-06-24 Conference or Workshop Item PeerReviewed application/pdf en https://repo.uum.edu.my/id/eprint/13468/1/PID50.pdf Abdollah, Mohd Faizal and Mas’ud, Mohd Zaki and Sahib@Sahibuddin, Shahrin and Yusof, Robiah and Selamat, Siti Rahayu (2009) Threshold verification using statistical approach for fast attack detection. In: International Conference on Computing and Informatics 2009 (ICOCI09), 24-25 June 2009, Legend Hotel, Kuala Lumpur. http://www.icoci.cms.net.my/
spellingShingle QA76 Computer software
Abdollah, Mohd Faizal
Mas’ud, Mohd Zaki
Sahib@Sahibuddin, Shahrin
Yusof, Robiah
Selamat, Siti Rahayu
Threshold verification using statistical approach for fast attack detection
title Threshold verification using statistical approach for fast attack detection
title_full Threshold verification using statistical approach for fast attack detection
title_fullStr Threshold verification using statistical approach for fast attack detection
title_full_unstemmed Threshold verification using statistical approach for fast attack detection
title_short Threshold verification using statistical approach for fast attack detection
title_sort threshold verification using statistical approach for fast attack detection
topic QA76 Computer software
url https://repo.uum.edu.my/id/eprint/13468/1/PID50.pdf
work_keys_str_mv AT abdollahmohdfaizal thresholdverificationusingstatisticalapproachforfastattackdetection
AT masudmohdzaki thresholdverificationusingstatisticalapproachforfastattackdetection
AT sahibsahibuddinshahrin thresholdverificationusingstatisticalapproachforfastattackdetection
AT yusofrobiah thresholdverificationusingstatisticalapproachforfastattackdetection
AT selamatsitirahayu thresholdverificationusingstatisticalapproachforfastattackdetection