English
Related papers

Related papers: "Flow Size Difference" Can Make a Difference: Dete…

200 papers

The network security analyzers use intrusion detection systems (IDSes) to distinguish malicious traffic from benign ones. The deep learning-based IDSes are proposed to auto-extract high-level features and eliminate the time-consuming and…

Cryptography and Security · Computer Science 2023-03-07 Mahdi Soltani , Khashayar Khajavi , Mahdi Jafari Siavoshani , Amir Hossein Jahangir

Intrusion detection system (IDS) is an important part of enterprise security system architecture. In particular, anomaly-based IDS has been widely applied to detect abnormal process behaviors that deviate from the majority. However, such…

Cryptography and Security · Computer Science 2016-08-10 Boxiang Dong , Zhengzhang Chen , Hui Wang , Lu-An Tang , Kai Zhang , Ying Lin , Haifeng Chen , Guofei Jiang

The value of a social network is generally determined by its size and the connectivity of its nodes. But since some of the nodes may be fake ones and others that are dormant, the question of validating the node counts by statistical tests…

Social and Information Networks · Computer Science 2015-06-11 Sieteng Soh , Gongqi Lin , Subhash Kak

This paper proposes a measurement approach for estimating the privacy leakage from Intrusion Detection System (IDS) alarms. Quantitative information flow analysis is used to build a theoretical model of privacy leakage from IDS rules, based…

Cryptography and Security · Computer Science 2013-08-27 Nils Ulltveit-Moe , Vladimir Oleshchuk

Today by growing network systems, security is a key feature of each network infrastructure. Network Intrusion Detection Systems (IDS) provide defense model for all security threats which are harmful to any network. The IDS could detect and…

Software Engineering · Computer Science 2014-03-06 Mehdi Bahrami , Mohammad Bahrami

Security and distributed infrastructure are two of the most common requirements for big data software. But the security features of the big data platforms are still premature. It is critical to identify, modify, test and execute some of the…

Cryptography and Security · Computer Science 2016-11-24 Santosh Aditham , Nagarajan Ranganathan

Data-flow analysis is a general technique used to compute information of interest at different points of a program and is considered to be a cornerstone of static analysis. In this thesis, we consider interprocedural data-flow analysis as…

Programming Languages · Computer Science 2023-09-21 Ahmed Khaled Zaher

Networks represent how the entities of a system are connected and can be partitioned differently, prompting ways to compare partitions. Common approaches for comparing network partitions include information-theoretic measures based on…

Social and Information Networks · Computer Science 2024-01-18 Christopher Blöcker , Ingo Scholtes

An Intrusion Detection System (IDS) is a software that monitors a single or a network of computers for malicious activities (attacks) that are aimed at stealing or censoring information or corrupting network protocols. Most techniques used…

Cryptography and Security · Computer Science 2015-05-12 Mahdi Zamani , Mahnush Movahedi

The constant increase of devices connected to the Internet, and therefore of cyber-attacks, makes it necessary to analyze network traffic in order to recognize malicious activity. Traditional packet-based analysis methods are insufficient…

IoT networks are increasingly becoming target of sophisticated new cyber-attacks. Anomaly-based detection methods are promising in finding new attacks, but there are certain practical challenges like false-positive alarms, hard to explain,…

Cryptography and Security · Computer Science 2023-04-12 Ayyoob Hamza , Hassan Habibi Gharakheili , Theophilus A. Benson , Gustavo Batista , Vijay Sivaraman

Network management and security is currently one of the most vibrant research areas, among which, research on detecting and identifying anomalies has attracted a lot of interest. Researchers are still struggling to find an effective and…

Networking and Internet Architecture · Computer Science 2010-07-09 Huy Nguyen , Tam Van Nguyen , Dong Il Kim , Deokjai Choi

As malicious cyber threats become more sophisticated in breaching computer networks, the need for effective intrusion detection systems (IDSs) becomes crucial. Techniques such as Deep Packet Inspection (DPI) have been introduced to allow…

Cryptography and Security · Computer Science 2024-03-28 Kyle Stein , Arash Mahyari , Guillermo Francia , Eman El-Sheikh

A growing issue in the modern cyberspace world is the direct identification of malicious activity over network connections. The boom of the machine learning industry in the past few years has led to the increasing usage of machine learning…

Networking and Internet Architecture · Computer Science 2018-10-05 Jinoh Kim , Caitlin Sim , Jinhwan Choi

This paper presents a high-performance, scalable network monitoring and intrusion detection system (IDS) implemented in P4. The proposed solution is designed for high-performance environments such as cloud data centers, where ultra-low…

Networking and Internet Architecture · Computer Science 2024-12-24 Yaying Chen , Siamak Layeghy , Liam Daly Manocchio , Marius Portmann

Data Security has become a very serious part of any organizational information system. Internet threats have become more intelligent so it can deceive the basic security solutions such as firewalls and antivirus scanners. To enhance the…

Networking and Internet Architecture · Computer Science 2013-08-14 Mohamed Faisal Elrawy , T. K. Abdelhamid , A. M. Mohamed

We investigate the detection of botnet command and control (C2) hosts in massive IP traffic using machine learning methods. To this end, we use NetFlow data -- the industry standard for monitoring of IP traffic -- and ML models using two…

Cryptography and Security · Computer Science 2022-11-28 Subhabrata Majumdar , Ganesh Subramaniam

Signature-based Intrusion Detection Systems (SIDSs) are traditionally used to detect malicious activity in networks. A notable example of such a system is Snort, which compares network traffic against a series of rules that match known…

Cryptography and Security · Computer Science 2024-02-16 Ryan Guide , Eric Pauley , Yohan Beugin , Ryan Sheatsley , Patrick McDaniel

This paper presents a simple yet efficient method for an anomaly-based Intrusion Detection System (IDS). In reality, IDSs can be defined as a one-class classification system, where the normal traffic is the target class. The high diversity…

Machine Learning · Computer Science 2019-04-29 Bahram Mohammadi , Mohammad Sabokrou

Intrusion detection in IoT and industrial networks requires models that can detect rare attacks at low false-positive rates while remaining reliable under evolving traffic and limited labels. Existing IDS solutions often report strong…

Cryptography and Security · Computer Science 2026-03-03 Srikumar Nayak