An attack signature model to computer security intrusion detection


Autoria(s): Cansian, Adriano M.; Da Silva, Artur R.A.; De Souza, Marcelo
Contribuinte(s)

Universidade Estadual Paulista (UNESP)

Data(s)

27/05/2014

27/05/2014

01/12/2002

Resumo

Internal and external computer network attacks or security threats occur according to standards and follow a set of subsequent steps, allowing to establish profiles or patterns. This well-known behavior is the basis of signature analysis intrusion detection systems. This work presents a new attack signature model to be applied on network-based intrusion detection systems engines. The AISF (ACME! Intrusion Signature Format) model is built upon XML technology and works on intrusion signatures handling and analysis, from storage to manipulation. Using this new model, the process of storing and analyzing information about intrusion signatures for further use by an IDS become a less difficult and standardized process.

Formato

1368-1373

Identificador

http://dx.doi.org/10.1109/MILCOM.2002.1179680

Proceedings - IEEE Military Communications Conference MILCOM, v. 2, p. 1368-1373.

http://hdl.handle.net/11449/67059

10.1109/MILCOM.2002.1179680

WOS:000180880500250

2-s2.0-0037004539

Idioma(s)

eng

Relação

Proceedings - IEEE Military Communications Conference MILCOM

Direitos

closedAccess

Palavras-Chave #Computer networks #Electronic document identification systems #Information analysis #Security of data #XML #Attack signature model #Intrusion detection system #Intrusion signature format #Military communications
Tipo

info:eu-repo/semantics/conferencePaper