An incremental intrusion detection model using alarms correlation

Message:
Article Type:
Research/Original Article (دارای رتبه معتبر)
Abstract:
Today, intrusion detection systems are extremely important in securing computers and computer networks. Correlated systems are next to intrusion detection systems by analyzing and combining the alarms received from them, appropriate reports for review and producing security measures. One of the problems face by intrusion detection systems is generating a large volume of false alarms, so one of the most important issues in correlated systems is to check the alerts received by the intrusion detection system to distinguish true-positive alarms from false-positive alarms. The main focus of this research is on the applied optimization of classification methods to reduce the cost of organizations and security expert time in alert checking. The proposed intrusion detection model using correlation(IIDMC) is tested on a valid test dataset and the results show the efficiency of the proposed model and consequently its high accuracy.
Language:
English
Published:
International Journal Of Nonlinear Analysis And Applications, Volume:12 Issue: 1, Winter-Spring 2021
Pages:
541 to 562
https://www.magiran.com/p2329731  
سامانه نویسندگان
  • Javad Vahidi
    Corresponding Author (2)
    Associate Professor Computer Sci, Iran University of Science and Technology, Tehran, Iran
    Vahidi، Javad
  • Behrouz Minaei Bidgoli
    Author (3)
    Full Professor AI Group, Computer Engineering, Iran University of Science and Technology, Tehran, Iran
    Minaei Bidgoli، Behrouz
  • Alireza Pourebrahimi
    Author (4)
    Assistant Professor industrial management, Karaj Branch, Islamic Azad University, Karaj, Iran
    Pourebrahimi، Alireza
اطلاعات نویسنده(گان) توسط ایشان ثبت و تکمیل شده‌است. برای مشاهده مشخصات و فهرست همه مطالب، صفحه رزومه را ببینید.
مقالات دیگری از این نویسنده (گان)