Publication | Closed Access
Scan attack detection based on distributed cooperative model
18
Citations
6
References
2008
Year
Unknown Venue
Scan AttackAttack SimulationNetwork ScienceEngineeringIntrusion Detection SystemInformation SecurityThreat DetectionComputer EngineeringNetwork AnalysisSystems EngineeringAttack GraphComputer ScienceScan Attack MethodScan Attack DetectionNetwork Security
Researchers have done lots of work in scan attack detection. Various methods have been proposed. Although these methods can defense some scan attacks from hackers in some degree, there are lots of missing detections and false alerts. Especially current intrusion detection systems are difficult to satisfy the demand of large-scale distributed network. After we carefully research on network topological architecture and scan attack method and mechanism, we find that scan attack always happened at network layer and transport layer. Then we propose a scan detection method based on distributed cooperative model. It is composed of feature-based detection, scenario-based detection and statistic-based detection. The experiment results show that this method has obvious advantages. It can efficiently detect more scan attacks.
| Year | Citations | |
|---|---|---|
Page 1
Page 1