dc.contributor.author | Sánchez, Raúl | |
dc.contributor.author | Herrero Cosío, Álvaro | |
dc.contributor.author | Corchado, Emilio | |
dc.date.accessioned | 2023-01-18T12:03:50Z | |
dc.date.available | 2023-01-18T12:03:50Z | |
dc.date.issued | 2017-02 | |
dc.identifier.issn | 1367-0751 | |
dc.identifier.uri | http://hdl.handle.net/10259/7266 | |
dc.description.abstract | Much effort has been devoted to research on intrusion detection (ID) in recent years because intrusion strategies and technologies are constantly and quickly evolving. As an innovative solution based on visualization, MObile VIsualisation Connectionist Agent-Based IDS was previously proposed, conceived as a hybrid-intelligent ID System. It was designed to analyse
continuous network data at a packet level and is extended in present paper for the analysis of flow-based traffic data. By
incorporating clustering techniques to the original proposal, network flows are investigated trying to identify different types
of attacks. The analysed real-life data (the well-known dataset from the University of Twente) come from a honeypot directly
connected to the Internet (thus ensuring attack-exposure) and is analysed by means of clustering and neural techniques, individually and in conjunction. Promising results are obtained, proving the validity of the proposed extension for the analysis
of network flow data | en |
dc.format.mimetype | application/pdf | |
dc.language.iso | eng | es |
dc.publisher | Oxford University Press | es |
dc.relation.ispartof | Logic Journal of the IGPL. 2017, V. 25, n. 1, p. 83-102 | es |
dc.subject | Network intrusion detection | en |
dc.subject | Network flow | en |
dc.subject | Neural projection | en |
dc.subject | Clustering | en |
dc.subject | MOVICAB-IDS | en |
dc.subject.other | Informática | es |
dc.subject.other | Computer science | en |
dc.title | Clustering extension of MOVICAB-IDS to distinguish intrusions in flow-based data | en |
dc.type | info:eu-repo/semantics/article | es |
dc.rights.accessRights | info:eu-repo/semantics/openAccess | es |
dc.relation.publisherversion | https://doi.org/10.1093/jigpal/jzw047 | es |
dc.identifier.doi | 10.1093/jigpal/jzw047 | |
dc.identifier.essn | 1368-9894 | |
dc.journal.title | Logic Journal of IGPL | es |
dc.volume.number | 25 | es |
dc.issue.number | 1 | es |
dc.page.initial | 83 | es |
dc.page.final | 102 | es |
dc.type.hasVersion | info:eu-repo/semantics/publishedVersion | es |