Title :
Multi-Stage Intrusion Detection System Using Hidden Markov Model Algorithm
Author :
Lee, Do-hyeon ; Kim, Doo-young ; Jung, Jae-il
Author_Institution :
Hanyang Univ., Seoul
Abstract :
Intrusion detection systems are the basis of system protection from network attacks. However, intrusions are increasingly taking multi-stage procedures to attack a system, and cannot be detected by existing single stage intrusion detection systems. This paper proposes a multi-stage intrusion detection system architecture using hidden Markov model algorithm. This system considers every stage used by recent intrusions and applies them to the hidden Markov model algorithm to determine which intrusion is used in the audit data. This architecture reduces overheads of intrusion agents and raises efficiency of the whole system.
Keywords :
computer networks; hidden Markov models; security of data; telecommunication security; audit data; hidden Markov model algorithm; multistage intrusion detection system; network attacks; system protection; Algorithm design and analysis; Computer networks; Computer security; Cryptography; Hidden Markov models; Information science; Information security; Intrusion detection; Protection; Virtual private networks;
Conference_Titel :
Information Science and Security, 2008. ICISS. International Conference on
Conference_Location :
Seoul
Print_ISBN :
978-0-7695-3080-2
DOI :
10.1109/ICISS.2008.22