A decisional framework system for computer network intrusion detection

A decisional framework system for computer network intrusion detection

0.00 Avg rating0 Votes
Article ID: iaor20084220
Country: Netherlands
Volume: 177
Issue: 3
Start Page Number: 1824
End Page Number: 1838
Publication Date: Mar 2007
Journal: European Journal of Operational Research
Authors: , , ,
Keywords: decision theory: multiple criteria
Abstract:

This paper presents a multi-attribute decisional framework for computer network intrusion detection. First, a cost model that allows to estimate accurately the damage resulting from a security incident is described. Then, a multi-attribute optimization algorithm is applied to select the optimal decision based on alternatives to remedy such incidents. The major interest is that the proposed approach can be applied in collaborative reactive intrusion detection where human experts are assisted by automated tools to find the best response. The approach would allow the possibility to assess the performance of the whole system depending on the performance of each constituents' leading to a definition of optimality conditions on the introduced framework.

Reviews

Required fields are marked *. Your email address will not be published.