Self-adaptive web intrusion detection system

07/22/2009
by   Thomas Guyet, et al.
0

The evolution of the web server contents and the emergence of new kinds of intrusions make necessary the adaptation of the intrusion detection systems (IDS). Nowadays, the adaptation of the IDS requires manual -- tedious and unreactive -- actions from system administrators. In this paper, we present a self-adaptive intrusion detection system which relies on a set of local model-based diagnosers. The redundancy of diagnoses is exploited, online, by a meta-diagnoser to check the consistency of computed partial diagnoses, and to trigger the adaptation of defective diagnoser models (or signatures) in case of inconsistency. This system is applied to the intrusion detection from a stream of HTTP requests. Our results show that our system 1) detects intrusion occurrences sensitively and precisely, 2) accurately self-adapts diagnoser model, thus improving its detection accuracy.

READ FULL TEXT

page 1

page 13

research
06/04/2018

Provenance-based Intrusion Detection: Opportunities and Challenges

Intrusion detection is an arms race; attackers evade intrusion detection...
research
11/09/2020

Enhanced Few-shot Learning for Intrusion Detection in Railway Video Surveillance

Video surveillance is gaining increasing popularity to assist in railway...
research
09/26/2009

Hybrid Intrusion Detection and Prediction multiAgent System HIDPAS

This paper proposes an intrusion detection and prediction system based o...
research
08/28/2020

Self-Organizing Map assisted Deep Autoencoding Gaussian Mixture Model for Intrusion Detection

In the information age, a secure and stable network environment is essen...
research
08/16/2022

Designing an Artificial Immune System inspired Intrusion Detection System

The Human Immune System (HIS) works to protect a body from infection, il...
research
04/11/2019

Method of Self-Similar Load Balancing in Network Intrusion Detection System

In this paper, the problem of load balancing in network intrusion detect...
research
07/09/2023

A Lightweight Approach for Network Intrusion Detection based on Self-Knowledge Distillation

Network Intrusion Detection (NID) works as a kernel technology for the s...

Please sign up or login with your details

Forgot password? Click here to reset