Security Protocols Protection Based on Anomaly Detection

Abdulrahman ALHARBY
Hideki IMAI

Publication
IEICE TRANSACTIONS on Information and Systems   Vol.E89-D    No.1    pp.189-200
Publication Date: 2006/01/01
Online ISSN: 1745-1361
DOI: 10.1093/ietisy/e89-d.1.189
Print ISSN: 0916-8532
Type of Manuscript: Special Section PAPER (Special Section on New Technologies and their Applications of the Internet III)
Category: Intrusion Detection
Keyword: 
intrusion detection,  security protocols,  anomaly detection,  dynamic Bayesian network,  

Full Text: PDF(2.1MB)>>
Buy this Article



Summary: 
Security protocols flaws represent a substantial portion of security exposures of data networks. In order to evaluate security protocols against any attack, formal methods are equipped with a number of techniques. Unfortunately, formal methods are applicable for static state only, and don't guarantee detecting all possible flaws. Therefore, formal methods should be complemented with dynamic protection. Anomaly detection systems are very suitable for security protocols environments as dynamic activities protectors. This paper presents an intrusion detection system that uses a number of different anomaly detection techniques to detect attacks against security protocols.


open access publishing via