Skip to Main Content (Press Enter)

Logo UNIMI
  • ×
  • Home
  • Persone
  • Attività
  • Ambiti
  • Strutture
  • Pubblicazioni
  • Terza Missione

Expertise & Skills
Logo UNIMI

|

Expertise & Skills

unimi.it
  • ×
  • Home
  • Persone
  • Attività
  • Ambiti
  • Strutture
  • Pubblicazioni
  • Terza Missione
  1. Pubblicazioni

Using mobile agents for analyzing intrusion in computer networks

Altro Prodotto di Ricerca
Data di Pubblicazione:
2001
Citazione:
Using mobile agents for analyzing intrusion in computer networks / J. Aslam, M. Cremonini, D. Kotz, D. Rus. ((Intervento presentato al convegno ECOOP tenutosi a Budapest nel 2001.
Abstract:
Today hackers disguise their attacks by launching them form a set of compromised hosts distributed across the Internet. It is very difficult to defend against these attacks or to track down their origin. Commercially available intrusion detection systems can signal the occurrence of limited known types of attacks. New types of attacks are launched regularly but these tools are not effective in detecting them. Human experts are still the key tool for identifying, tracking, and disabling new attacks. Often this involves experts from many organizations working together to share their observations, hypothesis, and attack signatures. Unfortunately, today these experts have few tools that help them to automate this process. In this project we recognize that human experts will remain a critical part in the process of identifying, tracking and disabling computer attacks. We also recognize that an important part of the discovery, analysis, and defense against new distributed attacks is the cooperation that occurs between experts across different organizations. Many installations do not have the expertise necessary to develop full attack analyses. Our goal is to build automated tools for computer experts and system administrators to: • identify the characteristics of an attack given data from network sensors • develop a hypothesis about the nature and origin of the attack • share that hypothesis with security managers from other sites • test that hypothesis at those other sites and coordinate the results of testing • archive the data necessary for use as evidence in later law-enforcement actions ∗We are grateful to the DOJ for their generous support of this work.
Tipologia IRIS:
14 - Intervento a convegno non pubblicato
Keywords:
security; mobile agents
Elenco autori:
J. Aslam, M. Cremonini, D. Kotz, D. Rus
Autori di Ateneo:
CREMONINI MARCO ( autore )
Link alla scheda completa:
https://air.unimi.it/handle/2434/452298
Link al Full Text:
https://air.unimi.it/retrieve/handle/2434/452298/725665/10.1.1.147.2288.pdf
  • Aree Di Ricerca

Aree Di Ricerca

Settori (2)


Settore INF/01 - Informatica

Settore ING-INF/05 - Sistemi di Elaborazione delle Informazioni
  • Informazioni
  • Assistenza
  • Accessibilità
  • Privacy
  • Utilizzo dei cookie
  • Note legali

Realizzato con VIVO | Progettato da Cineca | 26.1.3.0