首页    期刊浏览 2025年07月05日 星期六
登录注册

文章基本信息

  • 标题:Mobile Agents for Detecting Network Attacks Using Timing Covert Channels
  • 本地全文:下载
  • 作者:Jędrzej Bieniasz ; Monika Stępkowska ; Artur Janicki
  • 期刊名称:Journal of Universal Computer Science
  • 印刷版ISSN:0948-6968
  • 出版年度:2019
  • 卷号:25
  • 期号:9
  • 页码:1109-1130
  • 出版社:Graz University of Technology and Know-Center
  • 摘要:This article addresses the problem of network attacks using steganographic techniques based on the manipulation of time relationships between IP packets. In the study, an efficient method to detect such attacks is presented. The proposed algorithm is based on the Change Observation Theory, and employs two types of agents: base and flying ones. The agents observe the time parameters of the network traffic, using proposed meta-histograms and trained machine learning algorithms, in the node where they were installed. The results of experiments using various machine learning algorithm are presented and discussed. The study showed that the Random Forest and MLP classifiers achieved the best detection results, yielding an area under the ROC curve (AUC) above 0.85 for the evaluation data. We showed a proof-of-concept for an attack detection method that combined the classification algorithm, the proposed anomaly metrics and the mobile agents. We claim that due to a unique feature of self-regulation, realized by destroying unnecessary agents, the proposed method can establish a new type of multi-agent intrusion detection system that can be applied to a wider group of IT systems.
  • 关键词:anomaly detection; intrusion detection; multi-agent systems; network security; steganography; traffic analysis
国家哲学社会科学文献中心版权所有