ORCEF: Online response cost evaluation framework for intrusion response system

作者: Alireza Shameli-Sendi , Michel Dagenais

DOI: 10.1016/J.JNCA.2015.05.004

关键词:

摘要: Abstract Response cost evaluation is a major part of the Intrusion System (IRS). Although many automated IRSs have been proposed, most them use statically evaluated responses, avoiding need for dynamic response cost. However, by designing responses we can alleviate drawbacks static model. Furthermore, it will be more effective at defending system from an attack as less predictable. A model offers best based on current situation network. Thus, positive effects and negative impacts must computed online, time, in We evaluate online with respect to resources dependencies number users. In this paper, present practical framework relevant factors evaluation. The proposed platform that leads us account user׳s needs terms quality services (QoS) critical processes. Compared other models, consists not only novel mechanism complex network topologies, but also detailed effect impact. addition, discuss main challenges type.

参考文章(44)
Nizar Kheir, Nora Cuppens-Boulahia, Frédéric Cuppens, Hervé Debar, A service dependency model for cost-sensitive intrusion response european symposium on research in computer security. pp. 626- 642 ,(2010) , 10.1007/978-3-642-15497-3_38
Douglas S. Reeves, Xinyuan Wang, S. Felix Wu, Tracing Based Active Intrusion Response ,(2002)
Udo W. Pooch, Curtis A. Carver, Adaptive agent-based intrusion response Texas A&M University. ,(2001)
W. Krelle, C. L. Hwang, Martin J. Beckmann, Shu-Jen J. Chen, Multiple Attribute Decision Making: Methods and Applications ,(1981)
Gürsel Serpen, Maheshkumar Sabhnani, Formulation of a Heuristic Rule for Misuse and Anomaly Detection for U2R Attacks in Solaris Operating System Environment. Security and Management. pp. 390- 396 ,(2003)
Ivan Balepin, Sergei Maltsev, Jeff Rowe, Karl Levitt, Using specification-based intrusion detection for Automated response recent advances in intrusion detection. pp. 136- 154 ,(2003) , 10.1007/978-3-540-45248-5_8
Wenke Lee, Wei Fan, Matthew Miller, Salvatore J. Stolfo, Erez Zadok, Toward cost-sensitive modeling for intrusion detection and response Journal of Computer Security. ,vol. 10, pp. 5- 22 ,(2002) , 10.3233/JCS-2002-101-202
J JOSHI, Intrusion Response Systems: A Survey Network Security: Know It All#R##N#Know It All. pp. 309- 342 ,(2008) , 10.1016/B978-0-12-374463-0.00010-2
S. Mnsman, P. Flesher, System or security managers adaptive response tool darpa information survivability conference and exposition. ,vol. 2, pp. 56- 68 ,(2000) , 10.1109/DISCEX.2000.821509