National Conference on Future Computing 2014 |
Foundation of Computer Science USA |
NCFC2014 - Number 1 |
January 2014 |
Authors: V. Aruna Devi, Prashant Yadav, S. Bhuvaneswari |
de4e6fd8-349a-4c71-b5dc-199201d757b8 |
V. Aruna Devi, Prashant Yadav, S. Bhuvaneswari . Intrusion Alert Aggregation System in Distributed Networks. National Conference on Future Computing 2014. NCFC2014, 1 (January 2014), 13-17.
A novel technique is proposed to aggregate the alerts produced when an intruder comes into an existence in distributed network. This becomes an essential task to cluster different types of alerts. Meta-alerts are generated from the clusters formed with all the relevant details of the attack in detail. This Alert aggregation technique is developed as a dynamic, probabilistic model of the existing or prevailed attacks that has been created so far. To cluster the alerts, the sensitive parameters are found and generative data stream modelling version is utilized. In addition, meta-alerts are generated with a delay of typically only a few seconds after observing the first alert belonging to a new attack instance