2020
DOI: 10.1109/ojcoms.2020.2989925
|View full text |Cite
|
Sign up to set email alerts
|

Incidents Information Sharing Platform for Distributed Attack Detection

Abstract: Intrusion detection plays a critical role in cyber-security domain since malicious attacks cause irreparable damages to cyber-systems. In this work, we propose the I2SP prototype, which is a novel Information Sharing Platform, able to gather, pre-process, model, and distribute network-traffic information. Within the I2SP prototype we build several challenging deep feature learning models for network-traffic intrusion detection. The learnt representations will be utilized for classifying each new network measur… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1
1

Citation Types

0
7
0
1

Year Published

2020
2020
2023
2023

Publication Types

Select...
5
2
1
1

Relationship

5
4

Authors

Journals

citations
Cited by 10 publications
(8 citation statements)
references
References 33 publications
0
7
0
1
Order By: Relevance
“…This paper provides a modification of our previous work [54] in designing a formulation that uploads, monitors and analyses network logs utilizing the pfSense software [1]. For each new network log that arrives our system, Apache Spark Streaming [3] is used for its monitoring in (semi) real-time conditions.…”
Section: Proposed Formulationmentioning
confidence: 99%
“…This paper provides a modification of our previous work [54] in designing a formulation that uploads, monitors and analyses network logs utilizing the pfSense software [1]. For each new network log that arrives our system, Apache Spark Streaming [3] is used for its monitoring in (semi) real-time conditions.…”
Section: Proposed Formulationmentioning
confidence: 99%
“…Security information and event management (SIEM) solutions aim at providing real time analysis and management of security alerts. They are commonly used in production environments, to have a global picture of the security status of an IT infrastructure, and can allow administrators to perceive a threat before it can maximize its damage [ 44 ].…”
Section: Review Of the State-of-the-artmentioning
confidence: 99%
“…Security Information and Event Management (SIEM) solutions aim at providing real-time analysis and management of security alerts. They are commonly used in production environments to have a global picture of the security status of an IT infrastructure and can allow administrators to perceive a threat before it can maximize its damage [43].…”
Section: Threat Intelligence and Information Sharingmentioning
confidence: 99%