Detection of DoS attacks using intrusion detection sensors

Intrusion detection systems have usually been developed using large host-based components. These components impose an extra load on the system where they run (sometimes even requiring a dedicated system) and are subject to tampering or disabling by an intruder. Additionally, intrusion detection syst...

Full description

Saved in:
Bibliographic Details
Main Authors: Maarof, Mohd. Aizaini, Pathemanthan, Ramakrishna
Format: Conference or Workshop Item
Published: 2002
Subjects:
Online Access:http://eprints.utm.my/id/eprint/7364/
http://dx.doi.org/10.1117/12.481058
Tags: Add Tag
No Tags, Be the first to tag this record!
id my.utm.7364
record_format eprints
spelling my.utm.73642017-07-23T03:15:24Z http://eprints.utm.my/id/eprint/7364/ Detection of DoS attacks using intrusion detection sensors Maarof, Mohd. Aizaini Pathemanthan, Ramakrishna QA75 Electronic computers. Computer science Intrusion detection systems have usually been developed using large host-based components. These components impose an extra load on the system where they run (sometimes even requiring a dedicated system) and are subject to tampering or disabling by an intruder. Additionally, intrusion detection systems have usually obtained information about host behavior through indirect means, such as audit trails or network packet traces. This potentially allows intruders to modify the information before the intrusion detection system, obtains it and slows down the detection and prevention of DoS attacks, making it possible for an intruder to hide his activities. In this paper we propose work that will attempt to show that it is possible to perform intrusion detection mechanism of DoS attacks using small sensors embedded in a computer system. These sensors will look for signs of specific intrusions. They will perform target monitoring by observing the behavior of the through an audit trail or other indirect means in real time while the Snort IDS running. Furthermore, by being built into the computer system it could provide a flexible alert sensor which may not impose a considerable extra load on the host they monitor. 2002 Conference or Workshop Item PeerReviewed Maarof, Mohd. Aizaini and Pathemanthan, Ramakrishna (2002) Detection of DoS attacks using intrusion detection sensors. In: Proceedings of SPIE - The International Society for Optical Engineering , 18-20 Aug 2009, Xi'An China, China. http://dx.doi.org/10.1117/12.481058
institution Universiti Teknologi Malaysia
building UTM Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider Universiti Teknologi Malaysia
content_source UTM Institutional Repository
url_provider http://eprints.utm.my/
topic QA75 Electronic computers. Computer science
spellingShingle QA75 Electronic computers. Computer science
Maarof, Mohd. Aizaini
Pathemanthan, Ramakrishna
Detection of DoS attacks using intrusion detection sensors
description Intrusion detection systems have usually been developed using large host-based components. These components impose an extra load on the system where they run (sometimes even requiring a dedicated system) and are subject to tampering or disabling by an intruder. Additionally, intrusion detection systems have usually obtained information about host behavior through indirect means, such as audit trails or network packet traces. This potentially allows intruders to modify the information before the intrusion detection system, obtains it and slows down the detection and prevention of DoS attacks, making it possible for an intruder to hide his activities. In this paper we propose work that will attempt to show that it is possible to perform intrusion detection mechanism of DoS attacks using small sensors embedded in a computer system. These sensors will look for signs of specific intrusions. They will perform target monitoring by observing the behavior of the through an audit trail or other indirect means in real time while the Snort IDS running. Furthermore, by being built into the computer system it could provide a flexible alert sensor which may not impose a considerable extra load on the host they monitor.
format Conference or Workshop Item
author Maarof, Mohd. Aizaini
Pathemanthan, Ramakrishna
author_facet Maarof, Mohd. Aizaini
Pathemanthan, Ramakrishna
author_sort Maarof, Mohd. Aizaini
title Detection of DoS attacks using intrusion detection sensors
title_short Detection of DoS attacks using intrusion detection sensors
title_full Detection of DoS attacks using intrusion detection sensors
title_fullStr Detection of DoS attacks using intrusion detection sensors
title_full_unstemmed Detection of DoS attacks using intrusion detection sensors
title_sort detection of dos attacks using intrusion detection sensors
publishDate 2002
url http://eprints.utm.my/id/eprint/7364/
http://dx.doi.org/10.1117/12.481058
_version_ 1643644757016051712
score 13.18916