• DocumentCode
    3369279
  • Title

    Enhancing Trust Evaluation Using Intrusion Sensitivity in Collaborative Intrusion Detection Networks: Feasibility and Challenges

  • Author

    Wenjuan Li ; Yuxin Meng ; Lam-for Kwok

  • Author_Institution
    Dept. of Comput. Sci., City Univ. of Hong Kong, Hong Kong, China
  • fYear
    2013
  • fDate
    14-15 Dec. 2013
  • Firstpage
    518
  • Lastpage
    522
  • Abstract
    Intrusion detection systems (IDSs) have been widely deployed in computers and networks to identify a variety of attacks. But network intrusions are now becoming more and more sophisticated to detect, thus, collaborative intrusion detection networks (CIDNs) have been proposed which enables an IDS to collect information and learn experience from other IDS nodes. By maintaining interactions among a set of IDS nodes, a CIDN is expected to be more powerful in detecting some complicated attacks such as denial-of-service (DoS) than a single IDS. In real deployment, we identify that each IDS may have different levels of sensitivity in detecting different types of intrusions (i.e., based on their own signatures and settings). In this paper, we therefore define a notion of intrusion sensitivity and investigate the feasibility of using it to evaluate the trustworthiness of an IDS node. In addition, we describe several challenges when using this notion in practice. In the evaluation, the experimental results indicate that the use of intrusion sensitivity is feasible and encouraging to enhance the accuracy of detecting malicious nodes.
  • Keywords
    computer crime; groupware; trusted computing; CIDN; DoS attack; IDS nodes; attacks identification; collaborative intrusion detection networks; denial-of-service attack; intrusion detection systems; intrusion sensitivity; malicious nodes detection; trust evaluation; trustworthiness; Accuracy; Collaboration; Intrusion detection; Peer-to-peer computing; Robustness; Sensitivity; Collaborative Intrusion Detection Network; Intrusion Detection; Intrusion Sensitivity; Trust Management;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computational Intelligence and Security (CIS), 2013 9th International Conference on
  • Conference_Location
    Leshan
  • Print_ISBN
    978-1-4799-2548-3
  • Type

    conf

  • DOI
    10.1109/CIS.2013.115
  • Filename
    6746483