Aggregating IDS Alerts Based on Time Threshold: Testing and Results

Journal Title: INTERNATIONAL JOURNAL OF COMPUTERS & TECHNOLOGY - Year 2013, Vol 11, Issue 2

Abstract

Every secure system has the possibility to fail. Therefore, extra effort should be taken to protect these systems. Intrusion Detection Systems (IDSs) had been proposed with the aim of providing extra protection to security systems. These systems trigger thousands of alerts per day, which prompt security analysts to verify each alert for relevance and severity based on an aggregation criterion. Several aggregation methods have been proposed to collect these alerts. This paper presents our threshold aggregation system (TAS). Results shows that TAS aggregates IDS alerts accurately based on user demands and threshold value.

Authors and Affiliations

Homam Reda El-Taj

Keywords

Related Articles

Performance Analysis of IEEE 802.15.4 Based Wireless Sensor Networks using LAR protocol for CBR and ZIGBEE Traffic Applications

IEEE 802.15.4 standard based wireless sensor networks (WSNs) emerges as the next generation wireless standard for low-rate wireless personal area networks. IEEE 802.15.4 standard offers low power, low data rate and short...

Sparsity based Single Object Tracking

Object tracking has importance in various video processing applications like video surveillance, perceptual user interface driver assistance, tracking etc. This paper deals with a new tracking technique that combines the...

Object-Oriented Petri Nets Virtual Organization Structure

Managing a mega organization has become an extremely complex task, especially if the organization is virtual. The operating structure of such a multi-faceted organization is very difficult to construct, and traditional o...

A Novel Approach of Stability Awareness Routing in MANETs

In this paper, we introduce a novel approach of stabilityawareness routing for efficient utilization of Bandwidth by useof Bandwidth Threshold. Earlier work on routing in MANETshad resulted in several routing protocols w...

A Performance Evaluation of Shape Based Image Retrieval Using Heuristic Function

Heuristic function plays an important role in content based image retrieval. The heuristic function used for feature selection and feature optimization for retrieval process. The feature selection process are depends on...

Download PDF file
  • EP ID EP650292
  • DOI 10.24297/ijct.v11i2.1175
  • Views 78
  • Downloads 0

How To Cite

Homam Reda El-Taj (2013). Aggregating IDS Alerts Based on Time Threshold: Testing and Results. INTERNATIONAL JOURNAL OF COMPUTERS & TECHNOLOGY, 11(2), 2216-2225. https://europub.co.uk/articles/-A-650292