首页 | 本学科首页   官方微博 | 高级检索  
     


Novel intrusion prediction mechanism based on honeypot log similarity
Authors:Ci‐Bin Jiang  I‐Hsien Liu  Yao‐Nien Chung  Jung‐Shian Li
Affiliation:Department of Electrical Engineering, Institute of Computer and Communication Engineering, National Cheng Kung University, Tainan City, Taiwan
Abstract:The current network‐based intrusion detection systems have a very high rate of false alarms, and this phenomena results in significant efforts to gauge the threat level of the anomalous traffic. In this paper, we propose an intrusion detection mechanism based on honeypot log similarity analysis and data mining techniques to predict and block suspicious flows before attacks occur. With honeypot logs and association rule mining, our approach can reduce the false alarm problem of intrusion detection because only suspicious traffic would be present in the honeypots. The proposed mechanism can reduce human effort, and the entire system can operate automatically. The results of our experiments indicate that the honeypot prediction system is practical for protecting assets from attacks or misuse.
Keywords:
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号