• DocumentCode
    1404314
  • Title

    Detecting attacks on networks

  • Author

    Herringshaw, Chris

  • Author_Institution
    Cambridge, MA, USA
  • Volume
    30
  • Issue
    12
  • fYear
    1997
  • fDate
    12/1/1997 12:00:00 AM
  • Firstpage
    16
  • Lastpage
    17
  • Abstract
    As Internet based and intranet based network systems have evolved, they have become invaluable tools that businesses can use to share information and conduct business with online partners. However, hackers have also learned to use these systems to access private networks and their resources. Studies have shown that many organizations have suffered external and internal network intrusions. Internet systems are subject to various types of attacks. Traditional network security products, such as firewalls, can be penetrated from outside and can also leave organizations vulnerable to internal attacks. Generally, victims do not find out that their networks have been attacked until they examine system logs the next day, after the damage has been done. Network intrusion detection systems solve this problem by detecting external and internal security breaches as they happen and immediately notifying security personnel and network administrators by e mail or pager. Intrusion detection systems use several types of algorithms to detect possible security breaches, including algorithms for statistical anomaly detection, rule based anomaly detection, and a hybrid of the two
  • Keywords
    Internet; authorisation; business data processing; computer crime; local area networks; Internet based network systems; businesses; hackers; internal network intrusions; internal security breaches; intranet based network systems; network administrators; network intrusion detection systems; network security product; online partners; private networks; rule based anomaly detection; security personnel; statistical anomaly detection; Application software; Artificial intelligence; Computer hacking; Degradation; Event detection; IP networks; Information security; Internet; Intrusion detection; Monitoring; Personnel; Postal services; Switches; System performance; Web server;
  • fLanguage
    English
  • Journal_Title
    Computer
  • Publisher
    ieee
  • ISSN
    0018-9162
  • Type

    jour

  • DOI
    10.1109/2.642762
  • Filename
    642762