Detection of DoS attacks using intrusion detection sensors

Intrusion detection systems have usually been developed using large host-based components. These components impose an extra load on the system where they run (sometimes even requiring a dedicated system) and are subject to tampering or disabling by an intruder. Additionally, intrusion detection syst...

Full description

Bibliographic Details
Main Authors: Maarof, Mohd. Aizaini, Pathemanthan, Ramakrishna
Format: Conference or Workshop Item
Published: 2002
Subjects:
Online Access:http://eprints.utm.my/7364/
_version_ 1848891454030610432
author Maarof, Mohd. Aizaini
Pathemanthan, Ramakrishna
author_facet Maarof, Mohd. Aizaini
Pathemanthan, Ramakrishna
author_sort Maarof, Mohd. Aizaini
building UTeM Institutional Repository
collection Online Access
description Intrusion detection systems have usually been developed using large host-based components. These components impose an extra load on the system where they run (sometimes even requiring a dedicated system) and are subject to tampering or disabling by an intruder. Additionally, intrusion detection systems have usually obtained information about host behavior through indirect means, such as audit trails or network packet traces. This potentially allows intruders to modify the information before the intrusion detection system, obtains it and slows down the detection and prevention of DoS attacks, making it possible for an intruder to hide his activities. In this paper we propose work that will attempt to show that it is possible to perform intrusion detection mechanism of DoS attacks using small sensors embedded in a computer system. These sensors will look for signs of specific intrusions. They will perform target monitoring by observing the behavior of the through an audit trail or other indirect means in real time while the Snort IDS running. Furthermore, by being built into the computer system it could provide a flexible alert sensor which may not impose a considerable extra load on the host they monitor.
first_indexed 2025-11-15T20:58:13Z
format Conference or Workshop Item
id utm-7364
institution Universiti Teknologi Malaysia
institution_category Local University
last_indexed 2025-11-15T20:58:13Z
publishDate 2002
recordtype eprints
repository_type Digital Repository
spelling utm-73642017-07-23T03:15:24Z http://eprints.utm.my/7364/ Detection of DoS attacks using intrusion detection sensors Maarof, Mohd. Aizaini Pathemanthan, Ramakrishna QA75 Electronic computers. Computer science Intrusion detection systems have usually been developed using large host-based components. These components impose an extra load on the system where they run (sometimes even requiring a dedicated system) and are subject to tampering or disabling by an intruder. Additionally, intrusion detection systems have usually obtained information about host behavior through indirect means, such as audit trails or network packet traces. This potentially allows intruders to modify the information before the intrusion detection system, obtains it and slows down the detection and prevention of DoS attacks, making it possible for an intruder to hide his activities. In this paper we propose work that will attempt to show that it is possible to perform intrusion detection mechanism of DoS attacks using small sensors embedded in a computer system. These sensors will look for signs of specific intrusions. They will perform target monitoring by observing the behavior of the through an audit trail or other indirect means in real time while the Snort IDS running. Furthermore, by being built into the computer system it could provide a flexible alert sensor which may not impose a considerable extra load on the host they monitor. 2002 Conference or Workshop Item PeerReviewed Maarof, Mohd. Aizaini and Pathemanthan, Ramakrishna (2002) Detection of DoS attacks using intrusion detection sensors. In: Proceedings of SPIE - The International Society for Optical Engineering , 18-20 Aug 2009, Xi'An China, China. http://dx.doi.org/10.1117/12.481058
spellingShingle QA75 Electronic computers. Computer science
Maarof, Mohd. Aizaini
Pathemanthan, Ramakrishna
Detection of DoS attacks using intrusion detection sensors
title Detection of DoS attacks using intrusion detection sensors
title_full Detection of DoS attacks using intrusion detection sensors
title_fullStr Detection of DoS attacks using intrusion detection sensors
title_full_unstemmed Detection of DoS attacks using intrusion detection sensors
title_short Detection of DoS attacks using intrusion detection sensors
title_sort detection of dos attacks using intrusion detection sensors
topic QA75 Electronic computers. Computer science
url http://eprints.utm.my/7364/
http://eprints.utm.my/7364/