A Real-Time Intrusion Detection and Protection System at System Call Level under the Assistance of a Grid - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Communication Dans Un Congrès Année : 2014

A Real-Time Intrusion Detection and Protection System at System Call Level under the Assistance of a Grid

Fang-Yie Leu
  • Fonction : Auteur
  • PersonId : 993460
Yi-Ting Hsiao
  • Fonction : Auteur
  • PersonId : 993461

Résumé

In this paper, we propose a security system, named the Intrusion Detection and Protection System (IDPS for short) at system call level, which creates personal profiles for users to keep track of their usage habits as the forensic features, and determines whether a legally login users is the owner of the account or not by comparing his/her current computer usage behaviors with the user’s computer usage habits collected in the account holder’s personal profile. The IDPS uses a local computational grid to detect malicious behaviors in a real-time manner. Our experimental results show that the IDPS’s user identification accuracy is 93%, the accuracy on detecting its internal malicious attempts is up to 99% and the response time is less than 0.45 sec., implying that it can prevent a protected system from internal attacks effectively and efficiently.
Fichier principal
Vignette du fichier
978-3-642-55032-4_37_Chapter.pdf (532.56 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

hal-01397236 , version 1 (15-11-2016)

Licence

Paternité

Identifiants

Citer

Fang-Yie Leu, Yi-Ting Hsiao, Kangbin Yim, Ilsun You. A Real-Time Intrusion Detection and Protection System at System Call Level under the Assistance of a Grid. 2nd Information and Communication Technology - EurAsia Conference (ICT-EurAsia), Apr 2014, Bali, Indonesia. pp.375-385, ⟨10.1007/978-3-642-55032-4_37⟩. ⟨hal-01397236⟩
65 Consultations
156 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More