• DocumentCode
    2860520
  • Title

    Multi-Stage Intrusion Detection System Using Hidden Markov Model Algorithm

  • Author

    Lee, Do-hyeon ; Kim, Doo-young ; Jung, Jae-il

  • Author_Institution
    Hanyang Univ., Seoul
  • fYear
    2008
  • fDate
    10-12 Jan. 2008
  • Firstpage
    72
  • Lastpage
    77
  • Abstract
    Intrusion detection systems are the basis of system protection from network attacks. However, intrusions are increasingly taking multi-stage procedures to attack a system, and cannot be detected by existing single stage intrusion detection systems. This paper proposes a multi-stage intrusion detection system architecture using hidden Markov model algorithm. This system considers every stage used by recent intrusions and applies them to the hidden Markov model algorithm to determine which intrusion is used in the audit data. This architecture reduces overheads of intrusion agents and raises efficiency of the whole system.
  • Keywords
    computer networks; hidden Markov models; security of data; telecommunication security; audit data; hidden Markov model algorithm; multistage intrusion detection system; network attacks; system protection; Algorithm design and analysis; Computer networks; Computer security; Cryptography; Hidden Markov models; Information science; Information security; Intrusion detection; Protection; Virtual private networks;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Information Science and Security, 2008. ICISS. International Conference on
  • Conference_Location
    Seoul
  • Print_ISBN
    978-0-7695-3080-2
  • Type

    conf

  • DOI
    10.1109/ICISS.2008.22
  • Filename
    4438213