J. C. Hung, Kuan-Cheng Lin, A. Y. Chang, Nigel H. Lin, Louis H. Lin
{"title":"A behavior-based anti-worm system","authors":"J. C. Hung, Kuan-Cheng Lin, A. Y. Chang, Nigel H. Lin, Louis H. Lin","doi":"10.1109/AINA.2003.1193006","DOIUrl":null,"url":null,"abstract":"We propose a behavior-based intrusion detection and response system for Internet worms called Lambent Anti-Worm System (LAWS). LAWS can detect the intruded services and influenced range automatically. Besides, it also can analyze the key information of the intrusion. We can prevent worm distribution and intrusion in advance via the information provided. In addition, to detecting and preventing the distribution of a well-known malicious worm, LAWS can also defend for future, unknown, or new malicious worms. Mobile agents will help LAWS to form a defense system for other LAW'S users over the Internet. The contribution of our system is to decrease the response time of attack and reduce the damaged range. At the same time, it also diminishes the damage and decreases the fixed cost.","PeriodicalId":382765,"journal":{"name":"17th International Conference on Advanced Information Networking and Applications, 2003. AINA 2003.","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2003-03-27","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"10","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"17th International Conference on Advanced Information Networking and Applications, 2003. AINA 2003.","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/AINA.2003.1193006","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 10
Abstract
We propose a behavior-based intrusion detection and response system for Internet worms called Lambent Anti-Worm System (LAWS). LAWS can detect the intruded services and influenced range automatically. Besides, it also can analyze the key information of the intrusion. We can prevent worm distribution and intrusion in advance via the information provided. In addition, to detecting and preventing the distribution of a well-known malicious worm, LAWS can also defend for future, unknown, or new malicious worms. Mobile agents will help LAWS to form a defense system for other LAW'S users over the Internet. The contribution of our system is to decrease the response time of attack and reduce the damaged range. At the same time, it also diminishes the damage and decreases the fixed cost.
我们提出了一种基于行为的网络蠕虫入侵检测和响应系统,称为Lambent Anti-Worm system (LAWS)。LAWS可以自动检测被入侵的业务和影响范围。此外,它还可以分析入侵的关键信息。我们可以通过提供的信息提前阻止蠕虫的传播和入侵。此外,除了检测和阻止已知恶意蠕虫的传播外,法律还可以防御未来、未知或新的恶意蠕虫。移动代理将帮助法律在互联网上为其他法律用户形成防御体系。该系统的贡献在于缩短了攻击的响应时间,减小了被破坏的范围。同时也减少了伤害,降低了固定成本。