Member Login

E-mail:    Password:  




 TitleDate AddedCompany
whitepaper Architecting Intrusion-Detection Solutions: Choose the IDS That's Right for You2008-07-01 IBM
  Intrusion-Detection Systems (IDSs) have become an increasingly important part of the security strategy of many organizations. An IDS plays a key role in the concept of defense-in-depth, being only one of several deployed countermeasures designed to deter, slow down, and detect an attack before it occurs or before more serious actions occur. Discover the different types of IDSs and what types of attacks each can detect (or not detect), and see issues to consider when planning an IDS deployment. Before getting into any discussion of intrusion detection, it's important to clarify the process of intrusion detection. In the purest sense, intrusion detection is the process of monitoring a network or the hosts on a network for unauthorized activity, such as unusual activity or file modification.

Tags: Security Administration, Intrusion - Tampering
  
whitepaper A Traffic-Based Intrusion Detection System in IPv6/4 Environments and Its Performance Analysis2008-07-01 Jilin University
  This paper proposed a traffic-based intrusion detection system framework in IPv6/4 environments and a traffic-based intrusion method. Through the establishment of a mathematical model to identify the relationship among detection time, memory usage and classification, one achieved a highly effective detection method which considered both traffic characteristics and rule characteristics. Lastly, the paper implemented it over Snort. The experiment shows using the method that one proposed, reduces greatly the rule set that per packet or event need to be detected, improves the detection efficiency, can be utilized to solve the high package-loss problem of IDS. In the same condition, whether in terms of the detection speed or in the memory usage, the method outperforms Snort. It also proves the validity of the method.

Tags: Intrusion - Tampering, Intrusion - Tampering
  
whitepaper An Intrusion Detection System in Mobile Adhoc Networks2008-07-01 Hannam university
  Networks are protected using many firewalls and encryption software's. But many of them are not sufficient and effective. Therefore an Intrusion Detection System (IDS) is required that monitors the network, detects misbehavior or anomalies and notifies other nodes in the network to avoid or punish the misbehaving nodes. Numerous schemes have been proposed for Intrusion Detection and Response Systems, for Ad hoc networks. The ultimate goal of the security solutions for wireless networks is to provide security services, such as authentication, confidentiality, integrity, anonymity, and availability, to mobile users. This paper examines the vulnerabilities of wireless networks and argues that they must include intrusion detection in the security architecture for mobile computing environment.

Tags: Mobile and Wireless, Intrusion - Tampering
  
whitepaper Modeling an Intrusion Detection System Using Data Mining and Genetic Algorithms Based on Fuzzy Logic2008-07-01 Andhra University
  Fuzzy logic based methods together with the techniques from Artificial Intelligence have gained importance. Data mining techniques like clustering techniques, Association rules together with fuzzy logic to model the fuzzy association rules are being used for classifying data. These together with the techniques of genetic algorithms like genetic programming are producing better results. The present paper proposes a model for intrusion detection systems for anomaly detection based on fuzzy association rules which use genetic programming. The model is implemented and tested on sample data with 40 variables and the results are documented in the paper. As the model includes the LGP,MEP and GEP where the three collectively tries to detect the intrusion to a great extent.

Tags: Intrusion - Tampering, Intrusion - Tampering
  
whitepaper Immune System Based Intrusion Detection System2008-06-30 University of Fribourg
  The threats and intrusions in IT systems can basically be compared to human diseases with the difference that the human body has an effective way to deal with them, what still need to be designed for IT systems. The Human Immune System (HIS) can detect and defend against yet unseen intruders, is distributed, adaptive and multilayered to name only a few of its features. The immune system incorporates a powerful and diverse set of characteristics which are very interesting to use in the design of Intrusion Detection Systems (IDS). The authors propose therefore a hybrid intrusion detection system which combines host based and network based components but giving the focus to the host based intrusion detection as it is similar to the HIS.

Tags: Security Administration, Intrusion - Tampering
  
whitepaper McAfee Network Security Platform Keeps Global 1000 Clients' Outsourced Processes and Customer Data Safe2008-06-27 McAfee
  Mphasis, an EDS company, helps Global 1000 companies worldwide improve business processes to increase efficiency and deliver better customer service. The company needed to ensure continuity for the business processes it hosts and continuously protect the confidential customer information it collects daily. Mphasis deployed McAfee Network Security Platform which detects and prevents suspicious network intrusions, blocking attacks before they occur.

Tags: Security Administration, Intrusion - Tampering
  
whitepaper Live video broadcast: Data Loss Prevention from the Inside Out2008-06-26 Cisco Systems
  Firewalls and intrusion prevention systems can protect your network from outside threats, but they will not stop one of your biggest security risks: well-meaning employees who accidentally expose or release sensitive data to the outside world. This live 60-minute Cisco TechWiseTV video broadcast on Thursday, June 26, 2008, at 10 a.m. Pacific Time / 1 p.m. Eastern Time, will show you the practical steps and solutions you can implement now to control a growing problem that Gartner Research has termed "epidemic."

Learn the three primary loss vectors that you must assess for your organization. Find out how to implement integrated scanning and remediation, content filtering, and blocking without burdening end users or disrupting legitimate access. Discover why monitoring and measuring can be just as important as prevention and see new ways to safeguard data on USB keys and other portable storage devices. Register to join this event today!

TechWiseTV addresses the biggest challenges faced by today's IT managers with real-world advice, technical solutions, in-depth demonstrations, and step-by-step implementation guides.

Tags: Intrusion - Tampering, Security Administration, Data Tools, Intrusion - Tampering, Security Administration
  
whitepaper Gnort: High Performance Network Intrusion Detection Using Graphics Processors2008-06-17 Foundation for Research and Technology - FORTH
  The constant increase in link speeds and number of threats poses challenges to Network Intrusion Detection Systems (NIDS), which must cope with higher traffic throughput and perform even more complex per-packet processing. This paper presents an intrusion detection system based on the Snort open-source NIDS that exploits the underutilized computational power of modern graphics cards to offload the costly pattern matching operations from the CPU, and thus increase the over-all processing throughput. The prototype system, called Gnort, achieved a maximum traffic processing throughput of 2.3 Gbit/s using synthetic network traces, while when monitoring real traffic using a commodity Ethernet interface, it outperformed unmodified Snort by a factor of two.

Tags: Intrusion - Tampering
  
whitepaper Web Application Security: Automated scanning versus manual penetration testing2008-01-01 IBM
  Research has shown that a vast number of Web sites are vulnerable to application attacks, most occurring over HTTP/S protocols. There are two methods to detect Web vulnerability: using manual penetration testing and code review or using automated scanning tools and static analysis. This white paper addresses and compares these two methods.

Tags: Security Administration, Security Administration, Intrusion - Tampering, Security Administration, Software Development Tools, Software Development Tools
  
whitepaper Boosting Web Intrusion Detection Systems by Inferring Positive Signatures2008-06-15 University of Twente
  This paper presents a new approach to anomaly-based network intrusion detection for web applications. This approach is based on dividing the input parameters of the monitored web application in two groups: the "Regular" and the "Irregular" ones, and applying a new method for anomaly detection on the "Regular" ones based on the inference of a regular language. They support the proposal by realizing Sphinx, an anomaly-based intrusion detection system based on it. Thorough benchmarks show that Sphinx performs better than current state-of-the-art systems, both in terms of false positives/false negatives as well as needing a shorter training period.

Tags: Intrusion - Tampering