摘要:Attacks on computer networks compromise the security of the system and degrade the performance of the network causing problems to users and organizations. Network-based Intrusion Detection Systems are used to detect attacks or malicious activity by analyzing the network traffic. The anomaly-based detection approach is used for intrusion detection. It is assumed that the presence of traffic anomalies, deviations from standard behavior, is indicative of an attack or malfunction. A major difficulty of an anomaly-based Intrusion Detection System is the construction of the profile due to the complexity of network traffic. Methods derived from Signal Analysis, among which, the Wavelet transform, have recently demonstrated applicability in detecting anomalies in network. This tutorial presents the fundamental concepts of intrusion detection and wavelet-based anomaly detection.
关键词:Detecção de Intrusões;Anomalias;Ataques;Wavelet;Segurança da Informação.