Anti-evasion technique for packet based pre-filtering for network intrusion detection systems (Poster)
Autor: | Salvatore Pontarelli, Simone Teofili |
---|---|
Rok vydání: | 2011 |
Předmět: | |
Zdroj: | Traffic Monitoring and Analysis ISBN: 9783642203046 TMA |
DOI: | 10.1007/978-3-642-20305-3_18 |
Popis: | This work proposes a method to extend packet pre-filtering for Network Intrusion Detection Systems (NIDS). The aim of the method is to avoid the false negatives occurring when a malicious content has been sent splitted in several packets. In this paper we propose a method that is able to identify even the fragmented malicious content avoiding false negative limiting the false positive rate |
Databáze: | OpenAIRE |
Externí odkaz: |