Network Intrusion Detection with Threat Agent Profiling

Joint Authors

Bajtoš, Tomáš
Gajdoš, Andrej
Kleinová, Lenka
Lučivjanská, Katarína
Sokol, Pavol

Source

Security and Communication Networks

Issue

Vol. 2018, Issue 2018 (31 Dec. 2018), pp.1-17, 17 p.

Publisher

Hindawi Publishing Corporation

Publication Date

2018-03-25

Country of Publication

Egypt

No. of Pages

17

Main Subjects

Information Technology and Computer Science

Abstract EN

With the increase in usage of computer systems and computer networks, the problem of intrusion detection in network security has become an important issue.

In this paper, we discuss approaches that simplify network administrator’s work.

We applied clustering methods for security incident profiling.

We consider K-means, PAM, and CLARA clustering algorithms.

For this purpose, we used data collected in Warden system from various security tools.

We do not aim to differentiate between normal and abnormal network traffic, but we focus on grouping similar threat agents based on attributes of security events.

We suggest a case of a fine classification and a case of a coarse classification and discuss advantages of both cases.

American Psychological Association (APA)

Bajtoš, Tomáš& Gajdoš, Andrej& Kleinová, Lenka& Lučivjanská, Katarína& Sokol, Pavol. 2018. Network Intrusion Detection with Threat Agent Profiling. Security and Communication Networks،Vol. 2018, no. 2018, pp.1-17.
https://search.emarefa.net/detail/BIM-1214084

Modern Language Association (MLA)

Bajtoš, Tomáš…[et al.]. Network Intrusion Detection with Threat Agent Profiling. Security and Communication Networks No. 2018 (2018), pp.1-17.
https://search.emarefa.net/detail/BIM-1214084

American Medical Association (AMA)

Bajtoš, Tomáš& Gajdoš, Andrej& Kleinová, Lenka& Lučivjanská, Katarína& Sokol, Pavol. Network Intrusion Detection with Threat Agent Profiling. Security and Communication Networks. 2018. Vol. 2018, no. 2018, pp.1-17.
https://search.emarefa.net/detail/BIM-1214084

Data Type

Journal Articles

Language

English

Notes

Includes bibliographical references

Record ID

BIM-1214084