📣 Help Shape the Future of UKRI's Gateway to Research (GtR)

We're improving UKRI's Gateway to Research and are seeking your input! If you would be interested in being interviewed about the improvements we're making and to have your say about how we can make GtR more user-friendly, impactful, and effective for the Research and Innovation community, please email gateway@ukri.org.

System-Smart Intrusion Detection

Lead Research Organisation: CRANFIELD UNIVERSITY
Department Name: Cranfield Defence and Security

Abstract

Criminal use of the national network infrastructure is commonplace: blackmail, and phishing (social engineering) alone are significant in economic terms. These activities exploit network hosts that have been previously subverted, by attacks that are becoming increasingly sophisticated. Existing Intrusion Detection Systems (IDSs) are unable to detect new or subtle attacks, and deploying IDS sensors in higher volumes results in high report volumes, but little more effectiveness. This project will show that by taking a system design approach to the choice and configuration of sensors, together with network deployment strategies that allow flexible sensor placement, it is possible to substantially improve the detection of subtle attacks. This work does not focus on improvements to individual intrusion detection components; but rather exploits the synergy that can be obtained by combining the strengths of different types of sensor, in a holistic approach to intrusion management design.

Publications

10 25 50

publication icon
Shaikh S (2009) Towards scalable intrusion detection in Network Security

publication icon
Shaikh S (2008) Characterising intrusion detection sensors in Network Security

publication icon
Shaikh S (2008) Network reconnaissance in Network Security

publication icon
Shaikh S (2008) False positive response in Network Security

publication icon
Shaikh S (2008) Characterising intrusion detection sensors, part 2 in Network Security