Quality of Detectability (QoD) and QoD-aware AAT-based attack detection

Jie Wang, Raphael C.W. Phan, John N. Whitley, David J. Parish

Research output: Chapter in Book/Report/Conference proceedingConference PaperResearchpeer-review

1 Citation (Scopus)

Abstract

Network attacks occur in high proportion on the internet, thus aside from security as a means of defense there is a need for being able to detect attacks as they occur so that measures can be put in place to tackle them. For this, an intrusion detection system (DS) is required that has good quality of detection capability. We propose Quality of Detectability (QoD) as a kind of Quality of Service (QoS)-like detection quality mechanism. Two major contributions are given in this paper: (1) the notion of QoD to measure the attack detection capability; (2) an extended Augmented Attack Tree (AAT) and corresponding intrusion detection algorithm with QoD capabilities.

Original languageEnglish
Title of host publication2010 International Conference for Internet Technology and Secured Transactions, ICITST 2010
Publication statusPublished - 2010
EventInternational Conference for Internet Technology and Secured Transactions (ICITST) 2010 - London, United Kingdom
Duration: 8 Nov 201011 Nov 2010
Conference number: 5th
https://ieeexplore.ieee.org/xpl/conhome/5672505/proceeding (Proceedings)

Conference

ConferenceInternational Conference for Internet Technology and Secured Transactions (ICITST) 2010
Abbreviated titleICITST 2010
Country/TerritoryUnited Kingdom
CityLondon
Period8/11/1011/11/10
Internet address

Cite this