Intelligent Automated Intrusion Response System based on Fuzzy Decision Making and Risk Assessment

被引:0
作者
Berenjian, Samaneh [1 ]
Shajari, Mehdi [1 ]
Farshid, Nadieh [2 ]
Hatamian, Majid [3 ]
机构
[1] Amirkabir Univ Technol, Dept Comp & IT Engn, Tehran, Iran
[2] Islamic Azad Univ, Dept Comp Engn, Mahshahr Branch, Mahshahr, Iran
[3] Islamic Azad Univ, Dept Comp Engn, Dezful Branch, Dezful, Iran
来源
2016 IEEE 8TH INTERNATIONAL CONFERENCE ON INTELLIGENT SYSTEMS (IS) | 2016年
关键词
Cost-sensitivity; Risk Assessment; Fuzzy Logic;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
The most important aim of Automated Intrusion Response Systems (AIRSs) is selecting responses that impose less cost on the protected system and which are able to neutralize intrusions progress effectively. Cost-sensitive AIRSs use different methods to launch efficient responses. In this regard, risk assessment as a component for assessing intrusion danger on the system is introduced in many papers. However, most available risk assessment methods produce ambiguous results. Fuzzy logic is known as an effective method to be used in the process of risk assessment. This is mainly because fuzzy approach reduces the level of uncertainty of risk factors. To assess risk by fuzzy methods, risk parameters which are extracted from the traffic patterns are used as inputs of fuzzy systems. The aim of this paper is to introduce an AIRS based on fuzzy risk assessment to evaluate the risk of each intrusion in real time and apply a suitable response for protecting web applications. We also introduce a method for applying responses retroactively. The results of applied method show the effective performance of the proposed method in terms of cost-sensitivity and time to response.
引用
收藏
页码:709 / 714
页数:6
相关论文
共 23 条
[1]  
[Anonymous], 2007, INT J INFORM COMPUTE, DOI DOI 10.1504/IJICS.2007.012248
[2]  
[Anonymous], 2013, OWASP Top 10
[3]  
Boc K., 2012, P 12 INT C REL STAT, P17
[4]  
Carver C, 2000, IEEE WORKSH INF ASS
[5]  
Crist J., 2007, WEB BASED ATTACKSE
[6]  
Curtis A., 2001, THESIS
[7]  
Foo B, 2005, I C DEPEND SYS NETWO, P508
[8]   Congestion-Aware Routing and Fuzzy-based Rate Controller for Wireless Sensor Networks [J].
Hatamian, Majid ;
Almasi Bardmily, Maryam ;
Asadboland, Mojtaba ;
Hatamian, Mehdi ;
Barati, Hamid .
RADIOENGINEERING, 2016, 25 (01) :114-123
[9]   Application of a fuzzy based decision making methodology to construction project risk assessment [J].
Zeng, Jiahao ;
An, Min ;
Smith, Nigel John .
International Journal of Project Management, 2007, 25 (06) :589-600
[10]  
Kanoun W., 2010, Proceedings of the 2010 Fourth International Conference on Network and System Security (NSS 2010), P207, DOI 10.1109/NSS.2010.80