A response toolkit to provide an active response against intrusions using Ontology-Based IRS
Journal Title: MASKANA - Year 2014, Vol 5, Issue 5
Abstract
Active response systems are intended to run an automatic response against an intrusion. However, running an automatic response is not a trivial task because the execution cost could cause a greater negative effect than the intrusion itself. Also, the system should have a broad set of responses and an algorithm to select the optimal response. This paper proposes a response toolkit that is integrated into an ontology-based IRS to allow automatic execution of the best response against a detected intrusion. A set of host-based and network-based responses that can be performed by an IRS is presented. The response execution is performed by several plugin-based agents that have been distributed over the network. The verification of this proposal is made in a defacement attack case with satisfactory results.
Authors and Affiliations
Danny S. Guamán, Julio C. Caiza, Verónica Mateos
Estudio exploratorio sobre la presencia de contaminantes en leche cruda proveniente de la cuenca lechera del Tarqui de la Sierra Sur Ecuatoriana
La presente investigación determinó la existencia de contaminantes en la leche cruda de diez centros de acopio con capacidad de recepción entre 2,000 a 10,000 litros ubicados en siete cantones de la Provincia del Azuay...
Análisis del direccionamiento IPv6 y estudio de los Protocolos de Enrutamiento orientados a IPv6
This paper presents the results of a comparative analysis of routing protocols in IPv6 by experimental evidence, for which network topologies were designed based on the knowledge obtained in IPv4. In the tests, feature...
Plataforma para la búsqueda por contenido visual y semántico de imágenes médicas
Este trabajo describe una plataforma que permite automatizar el proceso de anotación semántica sobre imágenes médicas, sin depender de la ontología utilizada. Las anotaciones automáticas se realizan mediante: (a) un pr...
Aplicación Facebook para la gestión de objetos de aprendizaje en redes sociales
With the evolution of Facebook into a platform, the objective of this work was to evaluate how reliable is it to build a Facebook application for managing learning objects in social media. The paper provides a descript...
Predicción de caudales en la cabecera de la cuenca del Paute mediante el modelo DBM
El modelo Mecanicista Basado en Datos (DBM) se ha utilizado conjuntamente con el filtro de Kalman (como una técnica de asimilación de datos) para la predicción de caudales en una subcuenca ubicada en la parte alta de l...