• DocumentCode
    3263108
  • Title

    Various viewpoints analysis of the actual and large-scale data by using the data mining technique

  • Author

    Tamura, Kensuke ; Matsuura, Kanta ; Imai, Hideki

  • Author_Institution
    Nat. Police Agency of Japan, Tokyo
  • fYear
    2005
  • fDate
    11-14 Oct. 2005
  • Firstpage
    283
  • Lastpage
    286
  • Abstract
    Many indiscriminate attacks represented by various computer worms happen on the Internet. These attacks, however, are not targeting at specific group of computers but all computers in the Internet. The administrator always has to grasp all activities on the Net, which is possible to take effective countermeasures against malicious activities by utilizing the logged data of IDS (intrusion detection system). So, we analyze the reliable data collected by the National Police Agency (NPA) of Japan with data mining approaches, and extract a flow of attacks with a measure of both appearance and confidence probability. Additionally, we dig deeper into the data by focusing on the difference of granularity of the Internet domains to which source hosts belong. We expect that the administrator can possess the preliminary knowledge required for defending against a possible attacks based on our results
  • Keywords
    Internet; data mining; invasive software; Internet; computer worm; data mining; indiscriminate attack; intrusion detection system; malicious activity; Computer worms; Data analysis; Data mining; Electronic mail; Fluid flow measurement; Internet; Intrusion detection; Large-scale systems; Monitoring; Reconnaissance;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Security Technology, 2005. CCST '05. 39th Annual 2005 International Carnahan Conference on
  • Conference_Location
    Las Palmas
  • Print_ISBN
    0-7803-9245-0
  • Type

    conf

  • DOI
    10.1109/CCST.2005.1594821
  • Filename
    1594821