تجاوز إلى المحتوى الرئيسي
User Image

Mohamed Mahmoud Abdeldyem

Associate Professor

عضو هيئة تدريس

كلية الدراسات التطبيقية وخدمة المجتمع
كلية الدراسات التطبيقية وخدمة المجتمع - مبني بن خلدون - الدور الثالث
المنشورات
مقال فى مجلة
2014
تم النشر فى:

A proposed HTTP service based IDS

Abd-Eldayem, Mohamed M. . 2014

Cybersecurity

The tremendous growth of the web-based applications has increased information security vulnerabilities over the Internet. Security administrators use Intrusion-Detection System (IDS) to monitor network traffic and host activities to detect attacks against hosts and network resources. In this paper IDS based on Naïve Bayes classifier is analyzed. The main objective is to enhance IDS performance through preparing the training data set allowing to detect malicious connections that exploit the http service. Results of application are demonstrated and discussed. In the training phase of the proposed IDS, at first a feature selection technique based on Naïve Bayes classifier is used, this technique identifies the most important HTTP traffic features that can be used to detect HTTP attacks. In the testing and running phases proposed IDS classifies the network traffic based on the requested service, then based on the selected features Naïve Bayes classifier is used to analyze the HTTP service based traffic and identifies the HTTP normal connections and attacks. The performance of the IDS is measured through experiments using NSL-KDD data set. The results show that the detection rate of the IDS is about 99%, the false-positive rate is about 1%, and the false-negative rate is about 0.25%; therefore, proposed IDS holds the highest detection rate and the lowest false alarm compared with other leading IDS. In addition, the proposed IDS based on Naïve Bayes is used to classify network connections as a normal or attack. And it holds a high detection rate and a low false alarm.

 

    نوع عمل المنشور
    Research Paper
    رقم المجلد
    Mar
    رقم الانشاء
    2014
    مجلة/صحيفة
    Egyptian Informatics Journal
    الصفحات
    من 13 الي 24
    مزيد من المنشورات
    publications

    Now-a-days, CDMA mobile network is used in many countries around the world, therefore, its security system is hot topic. Authentication and encryption are the most important security techniques…

    بواسطة Mohamed M. Abd-Eldayem
    2012
    publications

    Nowadays; modern Hospital Data Management Systems (HDMSs) are applied in a computer network; in addition…

    بواسطة Mohamed M. Abd-Eldayem
    2013
    publications

    The tremendous growth of the web-based applications has increased information …

    بواسطة Mohamed M. Abd-Eldayem
    2014