• DocumentCode
    3509703
  • Title

    Intrusion Detection Using Third-Parties Support

  • Author

    Fujii, Masahiro ; Takahashi, Koichi ; Hori, Yoichi ; Sakurai, Kouichi

  • Author_Institution
    Inf. Technol. & Nanotechnol., Inst. of Syst., Fukuoka
  • fYear
    2008
  • fDate
    21-23 Oct. 2008
  • Firstpage
    206
  • Lastpage
    212
  • Abstract
    Intrusions are one of the most important issues in the current Internet environment. Therefore, a lot of researchers and companies elaborated countermeasure techniques such as intrusion detection systems (IDS) and intrusion prevention systems (IPS). These systems detect intrusions and prevent attackers from succeeding in their intrusion attempts. They usually rely on pattern matching and therefore, work efficiently on known-attacks. However, they do not work efficiently on unknown-attacks such as zero-day attacks and targeted attacks. This means, we should assume that our machines can be corrupted anytime. Therefore, we should consider what we can do under this assumption for a next generation security framework. In this paper, we propose a new intrusion detection methodology using the support of other machines. In our proposal, when an attacker tries to attack other machines from a corrupted machine that the attacker has already intruded, other machines notify it to the administrator of the corrupted machine. Then, the attacker may lose the corrupted machine. Therefore, the attacker restrains itself from imprudently attacking other machines. This will suppress the propagation of corrupted machines in the Internet.
  • Keywords
    Internet; security of data; Internet environment; corrupted machine; countermeasure techniques; intrusion detection methodology; intrusion detection systems; intrusion prevention systems; next generation security framework; pattern matching; targeted attacks; third-parties support; zero-day attacks; Conferences; Distributed computing; Information science; Information security; Information technology; Internet; Intrusion detection; Pattern matching; Proposals; Timing; Cooperation; Intrusion Detection; Network Security;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Future Trends of Distributed Computing Systems, 2008. FTDCS '08. 12th IEEE International Workshop on
  • Conference_Location
    Kunming
  • ISSN
    1071-0485
  • Print_ISBN
    978-0-7695-3377-3
  • Type

    conf

  • DOI
    10.1109/FTDCS.2008.32
  • Filename
    4683137