PHAD: Packet header anomaly detection
Akash Garg, Prachi Maheshwari · 2016
PHAD basically works only over the attacks which are based on the Transport, Network and Data link Layer protocols i.e. Ethernet, IP, TCP, UDP, and ICMP protocols. The most important purpose of intrusion detection system is to detect attacks against information systems. It is a security method attempting to identify various attacks. In this paper we discussed PHAD (Packet Header Anomaly detection) as anomaly based statistical algorithms.