This paper reports the design principles and evaluation results of a new experimental hybrid invasion detection system (HIDS). This hybrid system combines the advantages of low false-positive rate of signature-based invasion detection system (IDS) and the ability of anomaly detection system (ADS) to detect novel unknown attacks. By mining anomalous traffic sequences from Internet connections, we build an ADS that detects anomalies beyond the capabilities of signature-based SNORT or Bro systems. A weighted signature generation scheme is developed to integrate ADS with SNORT by extracting signatures from anomalies detected.
HIDS extracts signatures from the output of ADS and adds them into the SNORT signature database for fast and accurate invasion detection. By testing our HIDS scheme over real-life Internet trace data mixed with 10 days of Massachusetts Institute of Technology/ Lincoln Laboratory (MIT/LL) attack data set, our experimental results show a 60 percent detection rate of the HIDS, compared with 30 percent and 22 percent in using the SNORT and Bro systems, respectively. This sharp increase in detection rate is obtained with less than 3 percent false alarms. The signatures generated by ADS upgrade the SNORT performance by 33 percent. The HIDS approach proves the vitality of detecting invasions and anomalies, simultaneously, by automated data mining and signature generation over Internet connection sequences.
- Processor : Intel Pentium IV
- RAM : 512 MB
- Hard Disk : 40GB
- Operating System : Windows 98,2000,xp
- Tools : jdk1.5.0
- Technologies : Java Swings, JDBC, Servlets
Labels : MSc Computer Science Dissertation Topics, Computer Science PhD Dissertation Topics or Ideas, M.Phil Dissertation in Computer Science, PhD Dissertation Computer Science, Computer Science Dissertation Examples, Computer Science Dissertation Structure, Masters Computer Science Dissertation, Forums Dissertation Ideas, Security Dissertation Ideas, Dissertation Topics Software Engineering, Software Engineering Dissertation Ideas, Computing Dissertation Topics, Dissertation Topics for Computer Science,Dissertation Ideas for Computer Science, Computer Dissertation Examples, Dissertation Ideas Forensics Training, Computer Dissertation Ideas, Computer Dissertation Topics, Computer Dissertation, Computer Science Thesis Topics or Ideas, Computer Thesis Writing, Thesis Topics Computer Science, Computer Dissertation Ideas or Topics