Towards a user network profiling for internal security using top-K rankings similarity measures

Cargando...
Miniatura

Fecha

2017-07

Autores

Parres-Peredo, Álvaro I.
Piza-Dávila, Hugo I.
Cervantes, Francisco

Título de la revista

ISSN de la revista

Título del volumen

Editor

IEEE

Resumen

Descripción

A major goal of current computer network security systems is to protect the network from outside attackers; however, protecting the network from its own users is still an unattended problem. In campus area networks, the risk of having internal attacks is high because of their topologies and the amount of users. This work proposes a new approach to identify whether a network user is having or not a normal behavior, by analyzing host traffic using top-k ranking similarity measures. The result of this analysis could be an input of intrusion detection systems. The document presents an experiment where real-time traffic of different users in a campus area network is compared to a reference traffic that corresponds to one of them.

Palabras clave

Seguridad Informática, Perfil de Usuarios, Redes de Computadoras, Top-K Rankings, Análisis de Trafico de Red

Citación

A.I. Parres-Peredo; H.I. Piza-Davila and F. Cervantes (2017). Towards a user network profiling for internal security using top-k rankings similarity measures. In 40th Int. Conf. Telecommunications and Signal Processing (TSP 2017), Barcelona, Spain, pp.16-19. https://rei.iteso.mx/handle/11117/5009