loading...
The Use of Distributed Network-Based IDS Systems in Detection of Evasion Attacks
Lisbon, Portugal July 17-July 22
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/AICT.2005.90Advanced Industrial Conference on Tel ...
 This Article 
 
PDF
HTML
 
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Ilija Basicevic, Novi Sad, Serbia And Montenegro
Miroslav Popovic, Novi Sad, Serbia And Montenegro
Vladimir Kovacevic, Novi Sad, Serbia And Montenegro
This paper discusses some problems in use of Intrusion Detection Systems (IDS), especially related to evasion attacks. Important characteristics of this type of attacks are presented, and possibilities for attack analyzed. Further along, characteristics of network and host based IDS systems are compared, and some aspects of distributed approach to architecture of IDS are analyzed. On the basis of such discussion, paper proposes use of distributed network based IDS systems, which are client based, in detection of evasion attacks. Proposed model is compared to host based Intrusion Prevention Systems (HIPS). Important characteristics of the model are discussed. Some implementation issues are presented.
Citation:
Ilija Basicevic, Miroslav Popovic, Vladimir Kovacevic, "The Use of Distributed Network-Based IDS Systems in Detection of Evasion Attacks," aict-sapir-elete, pp.78-82, Advanced Industrial Conference on Telecommunications/Service Assurance with Partial and Intermittent Resources Conference/E-Learning on Telecommunications Workshop (AICT/SAPIR/ELETE'05), 2005
Usage of this product signifies your acceptance of the Terms of Use.