Title :
An intrusion detection system based on system call
Author :
Shen, Yue ; Yu, Fei ; Zhang, Ling-fen ; An, Ji-yao ; Zhu, Miao-liang
Author_Institution :
Sch. of Comput. & Inf., Hunan Agric. Univ., Changsha, China
Abstract :
Intrusion detection is an efficient way to protect information system. This paper puts forward a new method of anomalous intrusion detection based on system call. It uses system calls regarded as input, and creates a FSA (finite-state automation machine) for the functions in the program. Then the FSA is used to detect the attack. Moreover, it can find the place of the vulnerability which exists in the program. This can help to alter the source program. Results are shown that this method is effective for some intrusion events.
Keywords :
finite state machines; program control structures; security of data; FSA; anomalous intrusion detection; finite-state automation machine; information system protection; intrusion detection system; program vulnerability; source program; system call; Artificial intelligence; Counting circuits; Educational institutions; Forward contracts; Humans; Information systems; Intrusion detection; Libraries; Protection; Safety; Anomalous Intrusion Detection; Finite-State Automation Machine; Intrusion Detection; System Call;
Conference_Titel :
Internet, 2005.The First IEEE and IFIP International Conference in Central Asia on
Print_ISBN :
0-7803-9179-9
DOI :
10.1109/CANET.2005.1598184