DocumentCode
2860520
Title
Multi-Stage Intrusion Detection System Using Hidden Markov Model Algorithm
Author
Lee, Do-hyeon ; Kim, Doo-young ; Jung, Jae-il
Author_Institution
Hanyang Univ., Seoul
fYear
2008
fDate
10-12 Jan. 2008
Firstpage
72
Lastpage
77
Abstract
Intrusion detection systems are the basis of system protection from network attacks. However, intrusions are increasingly taking multi-stage procedures to attack a system, and cannot be detected by existing single stage intrusion detection systems. This paper proposes a multi-stage intrusion detection system architecture using hidden Markov model algorithm. This system considers every stage used by recent intrusions and applies them to the hidden Markov model algorithm to determine which intrusion is used in the audit data. This architecture reduces overheads of intrusion agents and raises efficiency of the whole system.
Keywords
computer networks; hidden Markov models; security of data; telecommunication security; audit data; hidden Markov model algorithm; multistage intrusion detection system; network attacks; system protection; Algorithm design and analysis; Computer networks; Computer security; Cryptography; Hidden Markov models; Information science; Information security; Intrusion detection; Protection; Virtual private networks;
fLanguage
English
Publisher
ieee
Conference_Titel
Information Science and Security, 2008. ICISS. International Conference on
Conference_Location
Seoul
Print_ISBN
978-0-7695-3080-2
Type
conf
DOI
10.1109/ICISS.2008.22
Filename
4438213
Link To Document