Latest Research

TrackBack Spam: Abuse and Prevention Contemporary blogs receive comments and TrackBacks, which result in cross-references between blogs. We conducted a longitudinal study of TrackBack spam, collecting and analyzing almost 10 million samples...

Readmore

XCS: cross channel scripting and its impact on web... We study the security of embedded web servers used in consumer electronic devices, such as security cameras and photo frames, and for IT infrastructure, such as wireless access points and lights-out management...

Readmore

Embedded Management Interfaces: Emerging Massive Insecurity Over the last few years, the number of devices that embed user-friendly management interfaces accessible from the network has drastically increased. These interfaces can be found on almost every kind of...

Readmore

Decaptcha: Breaking 75% of eBay Audio CAPTCHAs. CAPTCHA tests aim at preventing attackers from performing automatic registration. In this paper we show that our prototype Decaptcha is able to successfully break 75% of eBay audio captchas. We compare...

Readmore

Extending Anticipation Games with Location, Penalty... Over the last few years, attack graphs have became a well recognized tool to analyze and model complex network attack. The most advanced evolution of attack graphs, called anticipation games, is based...

Readmore

  • Prev
  • Next

Toward Agent IDS: agent platform security features study

Posted on : 11-07-2004 | By : Elie Bursztein | In : Article

0

Intrusion Detection Systems (IDS) are used to discover several kinds of attacks. Commercial solutions are, generally centralized and suffer from significant limitations when used in high speed networks. This is one of our major motivations to use distributed model based on agent platform. We believe that agent facilities will help collecting efficent and useful informations for IDS. We also propose to use a combined analysis by invoking speciallized agents. The idea is to have a signature based agent, temporal analysis agent and behavior analysis agent. By combining three ananlysis, our IDS will be able to detect several kinds of attacks and intrusions. Before introducing our global agent IDS architecture, we need to validate the agent palteforme use and verify a set of security features. The first step is to choose a platforme which can offer security mechanisms needed by IDS solutions. In this paper, we first sum up IDS security needs, we introduce a set of comparison criteria and we present a security feautures study of agent platforme. After studying Concordia, JADE, Aglet, Voyager, Agent-TCL , MAP and JATLite platformes, we introduce our agent IDS by presenting the global architecture and future works.

Toward Agent IDS: agent platform security features study abstract

Toward Agent IDS: agent platform security features study slides