Cyber Security Challenges: Designing Efficient Intrusion Detection Systems and Antivirus Tools

Srinivas Mukkamala, Andrew H. Sung, Ajith Abraham · 2004

Introduction to Intrusion Detection Systems Intrusion detection an important component of information security technology helps in discovering, determining, and identifying unauthorized use, duplication, alteration, and destruction of information and information systems. Intrusion detection relies on the assumption that information and information systems under attack exhibit several distinguishable behavioral patterns or characteristics to that of the normal ones. Though intrusion detection technology is becoming ubiquitous in current network defense; it lacks basic definitions and mathematical understanding. Intrusion detection being subjective; each Intrusion Detection System (IDS) has a different classification and attack labeling mechanisms. It is most common for IDSs to alarm on any set of known attack behaviors. In the due course of determining whether a particular activity is normal or malicious, IDS fail to alarm an attack (false negative) or alarm normal activity as maliciou

Read the paper · More papers on PaperTik