DocumentCode
3263108
Title
Various viewpoints analysis of the actual and large-scale data by using the data mining technique
Author
Tamura, Kensuke ; Matsuura, Kanta ; Imai, Hideki
Author_Institution
Nat. Police Agency of Japan, Tokyo
fYear
2005
fDate
11-14 Oct. 2005
Firstpage
283
Lastpage
286
Abstract
Many indiscriminate attacks represented by various computer worms happen on the Internet. These attacks, however, are not targeting at specific group of computers but all computers in the Internet. The administrator always has to grasp all activities on the Net, which is possible to take effective countermeasures against malicious activities by utilizing the logged data of IDS (intrusion detection system). So, we analyze the reliable data collected by the National Police Agency (NPA) of Japan with data mining approaches, and extract a flow of attacks with a measure of both appearance and confidence probability. Additionally, we dig deeper into the data by focusing on the difference of granularity of the Internet domains to which source hosts belong. We expect that the administrator can possess the preliminary knowledge required for defending against a possible attacks based on our results
Keywords
Internet; data mining; invasive software; Internet; computer worm; data mining; indiscriminate attack; intrusion detection system; malicious activity; Computer worms; Data analysis; Data mining; Electronic mail; Fluid flow measurement; Internet; Intrusion detection; Large-scale systems; Monitoring; Reconnaissance;
fLanguage
English
Publisher
ieee
Conference_Titel
Security Technology, 2005. CCST '05. 39th Annual 2005 International Carnahan Conference on
Conference_Location
Las Palmas
Print_ISBN
0-7803-9245-0
Type
conf
DOI
10.1109/CCST.2005.1594821
Filename
1594821
Link To Document