The model of heuristic rules on the set of logical-linguistic tangles for abnormality detection in computer systems
DOI:
https://doi.org/10.18372/2410-7840.14.3500Keywords:
cyber attack, intrusion detection systems, network abnormality, computer system attack, abnormality detection in the computer systems, logical-linguistic tangles heuristic rules, expert assessmentAbstract
The drawback of advanced intrusion detection systemsbased on the principle of abnormal condition detection is that they basically are focused on the use of mathematical models, which require a lot of time to produce statistics. The mathematical models based on expert approaches are more effective, but to perform its functions the use of correspondingdecisive rules is necessary. To solve this problem it wasproposed the model of heuristic rules in fuzzy logic, which through the use of multiple pairs “attack parameters” and “attack a set of logical-linguistic tangles”, as well as a universal model of standard parameters allows to display the abnormal condition caused by a specific type of cyber attacks on computer network. Based on this model there were developedsome rules for scan detection, spoofing and Dos attacks which can be practically used to improve abnormality detectioncaused by attackers’ actions in computer systems.References
Корченко О. Г. Построение систем защиты информации на нечетких множествах [Текст] : Теория и практические решения / О. Г. Корченко. — К. : МК-Пресс, 2006. — 320 с.
Стасюк А.И. Базовая модель параметров для построения систем выявления атак / А.И. Стасюк, А.А.
Корченко // Захист інформації. — 2012. — №2 (55). — С. 47-51.
Модели эталонов лингвистических переменных для систем выявления атак / М.Г. Луцкий, А.А. Корченко, А.В. Гавриленко, А.А Охрименко // Захист інформації. — 2012. — №2 (55). — С. 71-78.
Горніцька Д.А. Визначення коефіцієнтів важливості для експертного оцінювання у галузі інформаційної безпеки / Д.А. Горніцька, В.В Волянська, А.О. Корченко // Захист інформації. — 2012. — №1 (54) . — С. 108-121.
Downloads
Published
2012-11-28
Issue
Section
Articles
License
Authors who publish with this journal agree to the following terms:- Authors retain copyright and grant the journal right of first publication with the work simultaneously licensed under a Creative Commons Attribution License that allows others to share the work with an acknowledgement of the work's authorship and initial publication in this journal.
- Authors are able to enter into separate, additional contractual arrangements for the non-exclusive distribution of the journal's published version of the work (e.g., post it to an institutional repository or publish it in a book), with an acknowledgement of its initial publication in this journal.
- Authors are permitted and encouraged to post their work online (e.g., in institutional repositories or on their website) prior to and during the submission process, as it can lead to productive exchanges, as well as earlier and greater citation of published work (See The Effect of Open Access).