MODELLING CYBER THREATS AND EVALUATING THE PERFORMANCE OF INTRUSION DETECTION SYSTEMS

Vitaliy Tymoshchuk, Vladyslav Pakhoda, Андрій Долінський, Andrii Karnaukhov, Dmytro Tymoshchuk · ГРААЛЬ НАУКИ · 2024

Cyber threats are becoming increasingly complex and diverse, which requires improved approaches to their detection. This article is devoted to modelling cyber threats, optimising the number of rules of an IDS system, and evaluating its effectiveness. The classification of modern cyberattacks, their implementation features and consequences are considered. A test environment for modelling attacks is created. The IDS Suricata was configured and the number of active rules was optimised, which reduced the load on the system and minimised false positives. The effectiveness of IDS Suricata in detecting various types of attacks was evaluated. The study results demonstrated the high efficiency of IDS Suricata in detecting cyber threats.

Read the paper · More papers on PaperTik