CIVILICA We Respect the Science
(ناشر تخصصی کنفرانسهای کشور / شماره مجوز انتشارات از وزارت فرهنگ و ارشاد اسلامی: ۸۹۷۱)

An incremental intrusion detection model using alarms correlation

عنوان مقاله: An incremental intrusion detection model using alarms correlation
شناسه ملی مقاله: JR_IJNAA-12-0_038
منتشر شده در در سال 1400
مشخصات نویسندگان مقاله:

- - - Department of Management and Economics, Science and Research Branch, Islamic Azad University, Tehran, Iran
- - - School of Mathematics, Iran University of Science and Technology, Tehran, Iran
- - - School of Computer Engineering, Iran University of Science and Technology, Tehran, Iran
- - - Department of Management and Accounting, Karaj Branch, Islamic Azad University, Karaj, Iran

خلاصه مقاله:
Today, intrusion detection systems are extremely important in securing computers and computer networks. Correlated systems are next to intrusion detection systems by analyzing and combining the alarms received from them, appropriate reports for review and producing security measures. One of the problems face by intrusion detection systems is generating a large volume of false alarms, so one of the most important issues in correlated systems is to check the alerts received by the intrusion detection system to distinguish true-positive alarms from false-positive alarms. The main focus of this research is on the applied optimization of classification methods to reduce the cost of organizations and security expert time in alert checking. The proposed intrusion detection model using correlation(IIDMC) is tested on a valid test dataset and the results show the efficiency of the proposed model and consequently its high accuracy.

کلمات کلیدی:
Intrusion Detection, Fuzzy Correlator, Incremental Online Learning, Active Learning

صفحه اختصاصی مقاله و دریافت فایل کامل: https://civilica.com/doc/1561418/