Anti-evasion technique for packet based pre-filtering for network intrusion detection systems (Poster)

Autor: Salvatore Pontarelli, Simone Teofili
Rok vydání: 2011
Předmět:
Zdroj: Traffic Monitoring and Analysis ISBN: 9783642203046
TMA
DOI: 10.1007/978-3-642-20305-3_18
Popis: This work proposes a method to extend packet pre-filtering for Network Intrusion Detection Systems (NIDS). The aim of the method is to avoid the false negatives occurring when a malicious content has been sent splitted in several packets. In this paper we propose a method that is able to identify even the fragmented malicious content avoiding false negative limiting the false positive rate
Databáze: OpenAIRE