Substantiating Security Threats Using Different Views of Wireless Network Traces
There are no files associated with this record.
| Title | Substantiating Security Threats Using Different Views of Wireless Network Traces |
|---|---|
| Author | Sithirasenan, Elankayer; Muthukkumarasamy, Vallipuram; Mathews, Sunil John |
| Publication Title | Proceedings of AusCERT Asia Pacific Information Technology Security Conference (AusCERT2007) |
| Editor | Clark, A., McPherson, M., and Mohay, G. |
| Year Published | 2007 |
| Publisher | AusCERT |
| Abstract | Huge amounts of network traces can be collected from today's busy computer networks for various analysis. These traces could be used to detect intruders and other unusual events. Real time detection of outliers from large data sets can lead to effective intrusion detection and prevention. Presently, due to lack of fast on-the-fly updating and processing capabilities intrusion detection systems (IDSs) do not detect intruders instantly. Furthermore, most IDSs cannot adapt their detection mechanism in real time to accommodate legitimate dynamic changes. Achieving dynamic adaptation in real time has been a long standing desire for effective intrusion detection and prevention. Organizations which heavily rely on network activities are in need of an ID that could detect intruders in advance and stop them before they could cause chaos. In this context we propose a novel mechanism to detect intruders in real time. Our system monitors for timing and behavioral anomalies and uses outlier based data association techniques to substantiate the anomaly. In this paper we introduce the concept of views and their use in substantiating security threats. We have tested our concept on data captured from our experimental wireless network environment and we present the results obtained from our analysis. |
| Peer Reviewed | Yes |
| Published | Yes |
| Publisher URI | http://conference.auscert.org.au/conf2007/ |
| ISBN | 9781864998771 |
| Conference name | 6th Asia Pacific Information Technology Security Conference (AusCERT 2007) |
| Location | Gold Coast, Australia |
| Date From | 2007-05-21 |
| Date To | 2007-05-25 |
| URI | http://hdl.handle.net/10072/17878 |
| Date Accessioned | 2008-03-31 |
| Date Available | 2008-06-17T05:21:38Z |
| Language | en_AU |
| Research Centre | Institute for Integrated and Intelligent Systems |
| Faculty | Faculty of Science, Environment, Engineering and Technology |
| Subject | Science & Technology |
| Publication Type | Conference Publications (Full Written Paper - Refereed) |
| Publication Type Code | e1 |
Please use this identifier to cite this record: http://hdl.handle.net/10072/17878
Griffith University copyright notice
Copyright in individual works within the repository belongs to their authors or publishers. You may make a print or digital copy of a work for your personal non-commercial use. All other rights are reserved, except for fair dealings or other user rights granted by the copyright laws of your country.
Back to top