Forensic Analysis for Effective Combine Attack Management System Based on Cloud Computing

Shrijeet Bharatbhushan Pagrut, Chetan Jagannath Shelke · 2014

We know that today’s world stand also on the base of internet system. Though internet problems with respect to its security such as internet worms spam, Trojan horse and phishing attacks remain a major challenge. One also has a type of attack naming Distributed Denial of Services attack on victim machine. New attack called botnet attack also affect internet security. To overcome overcome these many problems, a live internet security management system is proposed with an Effective Combine Attack Management System (ECAMS). A distributed security network with a centralize security centre comes with a peer to peer communication protocol used in the ECAMSs collaborative module and connects them virtually to exchange network events and security rules. In this paper, we propose a design and implementation of a security management system having function of forensic analysis by cloud based security centre. We proposed a storage on cloud server to store collected traffic information and then processing it with cloud computing platform to find different kinds of attacks. The cloud based security centre can instruct each collaborative ECAMS to collect events and raw traffic and send them back to deep analysis and due to which new security rules can be generated. And these security rules newly generated return back to security centre. In this combine network security management system can identify and remove new distributed attacks in fast and effective manner.

Read the paper · More papers on PaperTik