DocumentCode :
2230398
Title :
CIDD: A Cloud Intrusion Detection Dataset for Cloud Computing and Masquerade Attacks
Author :
Kholidy, Hisham A. ; Baiardi, Fabrizio
Author_Institution :
Dipt. di Inf., Univ. di Pisa, Pisa, Italy
fYear :
2012
fDate :
16-18 April 2012
Firstpage :
397
Lastpage :
402
Abstract :
Masquerade attacks pose a serious threat for cloud system due to the massive amount of resource of these systems. Lack of datasets for cloud computing hinders the building of efficient intrusion detection of these attacks. Current dataset cannot be used due to the heterogeneity of user requirements, the distinct operating systems installed in the VMs, and the data size of Cloud systems. This paper presents a Cloud Intrusion Detection Dataset (CIDD) that is the first one for cloud systems and that consists of both knowledge and behavior based audit data collected from both UNIX and Windows users. With respect to current datasets, CIDD has real instances of host and network based attacks and masquerades, and provides complete diverse audit parameters to build efficient detection techniques. The final statistic tables for each user are built by Log Analyzer and Correlator System (LACS) that parses and analyzes user´s binary log files, and correlates audits data according to user IP address(es) and audit time. We describe in details the components and the architecture of LACS and CIDD, and the attacks distribution in CIDD.
Keywords :
cloud computing; security of data; statistics; user interfaces; CIDD dataset; UNIX user; Windows user; audit time; behavior based audit data; cloud computing; cloud intrusion detection dataset; host based attack; knowledge based audit data; log analyzer and correlator system; masquerade attack; network based attack; statistic table; user IP address; user requirement; virtual machines; Cloud computing; Correlators; IP networks; Intrusion detection; Testing; Training; attacks; cloud; computing; dataset; intrusion detection; masquerade; security;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Information Technology: New Generations (ITNG), 2012 Ninth International Conference on
Conference_Location :
Las Vegas, NV
Print_ISBN :
978-1-4673-0798-7
Type :
conf
DOI :
10.1109/ITNG.2012.97
Filename :
6209206
Link To Document :
بازگشت