2011 7th International Conference on Next Generation Web Services Practices 2011
DOI: 10.1109/nwesp.2011.6088148
|View full text |Cite
|
Sign up to set email alerts
|

Exscind: Fast pattern matching for intrusion detection using exclusion and inclusion filters

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
3
1
1

Citation Types

0
8
0

Year Published

2012
2012
2021
2021

Publication Types

Select...
3
2
1

Relationship

2
4

Authors

Journals

citations
Cited by 16 publications
(8 citation statements)
references
References 9 publications
0
8
0
Order By: Relevance
“…Experiments are run on a set of trace files collected using Wireshark network protocol analyzer [20]. A thorough description and analysis of the traces is presented by Aldwairi and Alansari [21]. The number of intrusions and the distribution of the intrusions across the traces vary from trace to trace.…”
Section: Resultsmentioning
confidence: 99%
“…Experiments are run on a set of trace files collected using Wireshark network protocol analyzer [20]. A thorough description and analysis of the traces is presented by Aldwairi and Alansari [21]. The number of intrusions and the distribution of the intrusions across the traces vary from trace to trace.…”
Section: Resultsmentioning
confidence: 99%
“…We proposed a new faster and memory-efficient software-based system, Exscind (EXcluSion inClusIoN intrusion Detection). 14 Exscind means to cut off or exclude from the union, which sums the main idea of the algorithm: to exclude clean traffic without performing costly PM. To achieve this, the Bloom filter is deployed in a novel manner.…”
Section: Exscind Overviewmentioning
confidence: 99%
“…Moreover, the number of signatures is increasing significantly as new attacks appear. From 2003 to 2011, the number of Snort rules containing signatures increased from 1542 to 9945, respectively 14 . Researchers found that PM is the most computationally expensive part that requires almost 30%‐60% of total signature‐based IDS processing time 15 .…”
Section: Introductionmentioning
confidence: 99%
See 2 more Smart Citations