首页    期刊浏览 2024年10月05日 星期六
登录注册

文章基本信息

  • 标题:Windows Based Data Sets for Evaluation of Robustness of Host Based Intrusion Detection Systems (IDS) to Zero-Day and Stealth Attacks
  • 本地全文:下载
  • 作者:Waqas Haider ; Gideon Creech ; Yi Xie
  • 期刊名称:Future Internet
  • 电子版ISSN:1999-5903
  • 出版年度:2016
  • 卷号:8
  • 期号:3
  • 页码:29-36
  • DOI:10.3390/fi8030029
  • 出版社:MDPI Publishing
  • 摘要:The Windows Operating System (OS) is the most popular desktop OS in the world, as it has the majority market share of both servers and personal computing necessities. However, as its default signature-based security measures are ineffectual for detecting zero-day and stealth attacks, it needs an intelligent Host-based Intrusion Detection System (HIDS). Unfortunately, a comprehensive data set that reflects the modern Windows OS’s normal and attack surfaces is not publicly available. To fill this gap, in this paper two open data sets generated by the cyber security department of the Australian Defence Force Academy (ADFA) are introduced, namely: Australian Defence Force Academy Windows Data Set (ADFA-WD); and Australian Defence Force Academy Windows Data Set with a Stealth Attacks Addendum (ADFA-WD: SAA). Statistical analysis results based on these data sets show that, due to the low foot prints of modern attacks and high similarity of normal and attacked data, both these data sets are complex, and highly intelligent Host based Anomaly Detection Systems (HADS) design will be required.
  • 关键词:operating system; kernel; auditing; anomaly; low foot print attacks operating system ; kernel ; auditing ; anomaly ; low foot print attacks
国家哲学社会科学文献中心版权所有