A Real-Time Intrusion Detection and Protection System at System Call Level under the Assistance of a Grid - Information and Communication Technology
Conference Papers Year : 2014

A Real-Time Intrusion Detection and Protection System at System Call Level under the Assistance of a Grid

Fang-Yie Leu
  • Function : Author
  • PersonId : 993460
Yi-Ting Hsiao
  • Function : Author
  • PersonId : 993461

Abstract

In this paper, we propose a security system, named the Intrusion Detection and Protection System (IDPS for short) at system call level, which creates personal profiles for users to keep track of their usage habits as the forensic features, and determines whether a legally login users is the owner of the account or not by comparing his/her current computer usage behaviors with the user’s computer usage habits collected in the account holder’s personal profile. The IDPS uses a local computational grid to detect malicious behaviors in a real-time manner. Our experimental results show that the IDPS’s user identification accuracy is 93%, the accuracy on detecting its internal malicious attempts is up to 99% and the response time is less than 0.45 sec., implying that it can prevent a protected system from internal attacks effectively and efficiently.
Fichier principal
Vignette du fichier
978-3-642-55032-4_37_Chapter.pdf (532.56 Ko) Télécharger le fichier
Origin Files produced by the author(s)
Loading...

Dates and versions

hal-01397236 , version 1 (15-11-2016)

Licence

Identifiers

Cite

Fang-Yie Leu, Yi-Ting Hsiao, Kangbin Yim, Ilsun You. A Real-Time Intrusion Detection and Protection System at System Call Level under the Assistance of a Grid. 2nd Information and Communication Technology - EurAsia Conference (ICT-EurAsia), Apr 2014, Bali, Indonesia. pp.375-385, ⟨10.1007/978-3-642-55032-4_37⟩. ⟨hal-01397236⟩
80 View
169 Download

Altmetric

Share

More