DocumentCode :
3314878
Title :
Ontology based application level intrusion detection system by using Bayesian filter
Author :
Razzaq, Abdul ; Ahmed, Hafiz Farooq ; Hur, Ali ; Haider, Nasir
Author_Institution :
SEECS, Nat. Univ. of Sci. & Technol., Islamabad
fYear :
2009
fDate :
17-18 Feb. 2009
Firstpage :
1
Lastpage :
6
Abstract :
Web application security is the major security concern for e-business and information sharing communities. Research showed that more than 75% attacks are being deployed at application layer and almost 90% applications are vulnerable to these attacks. Various security mechanisms in the form of signature base models, anomaly detection, scanner, firewall and intrusion detection has been proposed but ineffective to provide complete security solution at application level. These provide partial solutions are ineffective to provide defense against zero day attacks with low false positive rate. We have introduced a novel approach for effective defenses against the application level attacks. Our system use the Bayesian filter to mitigate the context base attacks which are easily eludes packet level inspection. Our intelligent system is ontology base which analyze the input semantically and capable to detect zero day attacks with negligible false positive rates. The ontology base system can be refined and extended over time. Ontology base system also help in focusing on specific portion of network packet where attack is possible, thus reduce the research space and avoid sequential search.
Keywords :
belief networks; electronic commerce; ontologies (artificial intelligence); security of data; Bayesian filter; Web application security; anomaly detection; e-business; firewall; information sharing; intrusion detection system; ontology based application; Bayesian methods; Computer hacking; Data security; Filters; Information security; Intrusion detection; National security; Ontologies; Protection; Web server;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Computer, Control and Communication, 2009. IC4 2009. 2nd International Conference on
Conference_Location :
Karachi
Print_ISBN :
978-1-4244-3313-1
Electronic_ISBN :
978-1-4244-3314-8
Type :
conf
DOI :
10.1109/IC4.2009.4909223
Filename :
4909223
Link To Document :
بازگشت