skip to main content
10.1145/1389095.1389107acmconferencesArticle/Chapter ViewAbstractPublication PagesgeccoConference Proceedingsconference-collections
research-article

Denial of service detection and analysis using idiotypic networks paradigm

Published: 12 July 2008 Publication History

Abstract

In this paper we present a novel intrusion detection architecture based on Idiotypic Network Theory (INIDS), that aims at dealing with large scale network attacks featuring variable properties, like Denial of Service (DoS). The proposed architecture performs dynamic and adaptive clustering of the network traffic for taking fast and effective countermeasures against such high-volume attacks. INIDS is evaluated on the MIT'99 dataset and outperforms previous approaches for DoS detection applied to this set.

References

[1]
J. P. Anderson. Computer security threat monitoring and surveillance. Technical report, James P. Anderson Co., April 1980.
[2]
H. Bersini. Why the first glass of wine is better than the seventh. In 16th International Workshop on Database and Expert Systems Applications DEXA'05, pages 100--111. Springer, 2005.
[3]
G. Carl, G. Kesidis, R. R. Brooks, and S. Rai. Denial-of-service attack-detection techniques. IEEE Internet Computing, 10(1):82--89, 2006.
[4]
L. N. de Castro and J. Timmis. Artificial Immune Systems: A New Computational Intelligence Approach. Springer-Verlag, London, UK, 2002.
[5]
http://www.iana.org/assignments/port\textendashnumbers. Internet Assigned Numbers Authority (IANA).
[6]
http://www.ll.mit.edu/IST/ideval/index.html. MIT Lincoln Laboratories data set, 1999.
[7]
N. K. Jerne. Towards a network theory of the immune system. Ann. Immunol. (Inst. Pasteur, Paris), 125C(1-2):373--389, 1974.
[8]
J. Kim, P. J. Bentley, U. Aickelin, J. Greensmith, G. Tedesco, and J. Twycross. Immune system approaches to intrusion detection -- a review. Natural Computing: an international journal, 6(4):413--466, 2007.
[9]
J. Mirkovic, S. Dietrich, D. Dittrich, and P. Reiher. Internet Denial of Service: Attack and Defense Mechanisms. Prentice Hall PTR, 2004.
[10]
P. H. Mohr, N. Ryan, and J. Timmis. Exploiting immunological properties for ubiqitous computing systems. In Proceedings of 3rd International Conference on Artificial Immune Systems, ICARIS'04, pages 277--289. Springer, 2004.
[11]
M. Ostaszewski, F. Seredynski, and P. Bouvry. Coevolutionary-based mechanisms for network anomaly detection. Journal of Mathematical Modelling and Algorithms, 6(3):411--431, 2007.
[12]
T. Stibor. On the Appropriateness of Negative Selection for Anomaly Detection and Network Intrusion Detection. PhD thesis, Darmstadt University of Technology, 2006.
[13]
A. O. Tarakanov, L. B. Goncharova, and O. A. Tarakanov. A cytokine formal immune network. In Advances in Artificial Life, 8th European Conference, ECAL'05, pages 510--519. Springer, 2005.

Cited By

View all
  • (2009)Multiobjective classification with moGEPProceedings of the 11th Annual conference on Genetic and evolutionary computation10.1145/1569901.1569989(635-642)Online publication date: 8-Jul-2009

Index Terms

  1. Denial of service detection and analysis using idiotypic networks paradigm

    Recommendations

    Comments

    Information & Contributors

    Information

    Published In

    cover image ACM Conferences
    GECCO '08: Proceedings of the 10th annual conference on Genetic and evolutionary computation
    July 2008
    1814 pages
    ISBN:9781605581309
    DOI:10.1145/1389095
    • Conference Chair:
    • Conor Ryan,
    • Editor:
    • Maarten Keijzer
    Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than ACM must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected]

    Sponsors

    Publisher

    Association for Computing Machinery

    New York, NY, United States

    Publication History

    Published: 12 July 2008

    Permissions

    Request permissions for this article.

    Check for updates

    Author Tags

    1. denial of service
    2. idiotypic networks

    Qualifiers

    • Research-article

    Conference

    GECCO08
    Sponsor:

    Acceptance Rates

    Overall Acceptance Rate 1,669 of 4,410 submissions, 38%

    Contributors

    Other Metrics

    Bibliometrics & Citations

    Bibliometrics

    Article Metrics

    • Downloads (Last 12 months)1
    • Downloads (Last 6 weeks)0
    Reflects downloads up to 08 Mar 2025

    Other Metrics

    Citations

    Cited By

    View all
    • (2009)Multiobjective classification with moGEPProceedings of the 11th Annual conference on Genetic and evolutionary computation10.1145/1569901.1569989(635-642)Online publication date: 8-Jul-2009

    View Options

    Login options

    View options

    PDF

    View or Download as a PDF file.

    PDF

    eReader

    View online with eReader.

    eReader

    Figures

    Tables

    Media

    Share

    Share

    Share this Publication link

    Share on social media