False Alarm Reduction Using Adaptive Agent-Based Profiling
Salima Hacini,
Zahia Guessoum and
Mohamed Cheikh
Additional contact information
Salima Hacini: Lire Laboratory, TLSI Department, Constantine2 University, Constantine, Algeria
Zahia Guessoum: LIP6, Pierre et Marie Curie University, Paris, France
Mohamed Cheikh: Lire Laboratory, TLSI Department, Constantine2 University, Constantine, Algeria
International Journal of Information Security and Privacy (IJISP), 2013, vol. 7, issue 4, 53-74
Abstract:
In this paper the authors propose a new efficient anomaly-based intrusion detection mechanism based on multi-agent systems. New networks are particularly vulnerable to intrusion, they are often attacked with intelligent and skilful hacking techniques. The intrusion detection techniques have to deal with two problems: intrusion detection and false alarms. The issue of false alarms has an important impact on the success of the anomaly-based intrusion detection technologies. The purpose of this paper is to improve their accuracy by detecting real attacks and by reducing the number of unnecessary generated alerts. The authors' intrusion detection mechanism relies on a set of agents to ensure the detection and the adaptation of normal profile to support the legitimate dynamic changes that occur and are the cause of high rate of false alarms.
Date: 2013
References: Add references at CitEc
Citations:
Downloads: (external link)
http://services.igi-global.com/resolvedoi/resolve. ... 018/ijisp.2013100105 (application/pdf)
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:igg:jisp00:v:7:y:2013:i:4:p:53-74
Access Statistics for this article
International Journal of Information Security and Privacy (IJISP) is currently edited by Yassine Maleh
More articles in International Journal of Information Security and Privacy (IJISP) from IGI Global
Bibliographic data for series maintained by Journal Editor ().