A Real-Time Intrusion Detection and Protection System at System Call Level under the Assistance of a Grid

Abstract : In this paper, we propose a security system, named the Intrusion Detection and Protection System (IDPS for short) at system call level, which creates personal profiles for users to keep track of their usage habits as the forensic features, and determines whether a legally login users is the owner of the account or not by comparing his/her current computer usage behaviors with the user’s computer usage habits collected in the account holder’s personal profile. The IDPS uses a local computational grid to detect malicious behaviors in a real-time manner. Our experimental results show that the IDPS’s user identification accuracy is 93%, the accuracy on detecting its internal malicious attempts is up to 99% and the response time is less than 0.45 sec., implying that it can prevent a protected system from internal attacks effectively and efficiently.
Complete list of metadatas

Cited literature [12 references]  Display  Hide  Download

https://hal.inria.fr/hal-01397236
Contributor : Hal Ifip <>
Submitted on : Tuesday, November 15, 2016 - 3:50:42 PM
Last modification on : Wednesday, November 16, 2016 - 1:04:11 AM
Long-term archiving on : Thursday, March 16, 2017 - 1:24:03 PM

File

978-3-642-55032-4_37_Chapter.p...
Files produced by the author(s)

Licence


Distributed under a Creative Commons Attribution 4.0 International License

Identifiers

Citation

Fang-Yie Leu, Yi-Ting Hsiao, Kangbin Yim, Ilsun You. A Real-Time Intrusion Detection and Protection System at System Call Level under the Assistance of a Grid. 2nd Information and Communication Technology - EurAsia Conference (ICT-EurAsia), Apr 2014, Bali, Indonesia. pp.375-385, ⟨10.1007/978-3-642-55032-4_37⟩. ⟨hal-01397236⟩

Share

Metrics

Record views

103

Files downloads

231