• DocumentCode
    2432099
  • Title

    Intrusive behavior analysis based on honey pot tracking and ant algorithm analysis

  • Author

    Chang-Lung Tsai ; Chun-Chi Tseng ; Chin-Chuan Han

  • Author_Institution
    Dept. of Comput. Sci., Chinese Culture Univ., Taipei, Taiwan
  • fYear
    2009
  • fDate
    5-8 Oct. 2009
  • Firstpage
    248
  • Lastpage
    252
  • Abstract
    In this paper, a novel intrusion behavior analysis mechanism based on the design of honey pot and the diagnosis of ant colony algorithm has been proposed. In which, there are monitor module, track module, and analysis module developed. The intrusive behavior is then analyzed through the above modules. In the developed honey pot, all of the architecture, database, directory, security parameters are updated dynamically and timely to evade the probe test from the intruders. To record the traverse of an intrusion, the pheromone will be deposited as discovered. In addition, in order to exactly and correctly measure the capability of the intruders, the content of those discovered file, path and database will be updated and the security setting will also be enhanced timely to raise the difficulty of visiting or access again. All of the traverse of intruders and the corresponding behavior will be analyzed based on ant colony algorithm. Experimental results demonstrate that the proposed IDS mechanism possesses good efficiency and performance.
  • Keywords
    optimisation; security of data; ant algorithm analysis; ant colony algorithm diagnosis; honey pot tracking; information security; intrusive behavior analysis; Algorithm design and analysis; Computer science; Data security; Databases; Design engineering; IP networks; Information analysis; Information security; Intrusion detection; Protection; Internet hijacking; ant colony algorithm; honey pot; information security; intrusive behavior;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Security Technology, 2009. 43rd Annual 2009 International Carnahan Conference on
  • Conference_Location
    Zurich
  • Print_ISBN
    978-1-4244-4169-3
  • Electronic_ISBN
    978-1-4244-4170-9
  • Type

    conf

  • DOI
    10.1109/CCST.2009.5335531
  • Filename
    5335531