Extending of IDS for detecting abnormal intrusion traffic simulations based on SSFNet

Kwan Jong Yu, Seung Kyu Park, Kyung Hee Choi, Gihyun Jung · International Conference on Communications · 2005

The cyber attacks become more and more complex and variable. So, common type of Intrusion Detection System (IDS) which uses Rule Based matching process is hard to detect such malicious traffics. We propose more intelligent IDS system. Our system can detect dynamic abnormal traffics without the exact detection rules. This paper proposes an IDS which have rule based matching features and ability of detecting some unpredictable malicious traffic by itself. We implement this IDS based on SSFNet simulation framework. Performing various types of simulations for network intrusion, the implemented IDS on the simulation show that it plays the same property as that of actual networks.

Read the paper · More papers on PaperTik