ResearchBib Share Your Research, Maximize Your Social Impacts
Sign for Notice Everyday Sign up >> Login

A Cumulative Sum Technique for Network Cyber Intrusion Detection

Proceeding: The Third International Conference on Information Security and Digital Forensics (ISDF)

Publication Date:

Authors : ; ; ;

Page : 7-11

Keywords : DoS Intrusion Detection; CUSUM Chart; NSLKDD Dataset;

Source : Downloadexternal Find it from : Google Scholarexternal

Abstract

The present work proposes a mechanism of denial of service (DoS) intrusion detection, by examining changes in mean of the UDP and ICMP source bytes. The detection mechanism utilized for this purpose is the tabular cumulative sum (CUSUM) chart and the experimental dataset is the NSL-KDD Dataset. Two cases were evaluated. In the first case intrusion occurred in the UDP packets while in the second case the intrusion occurred in UDP and ICMP packets. In both cases, a shift in the source bytes mean value took place after the intrusion, and it was clearly depicted in the CUSUM chart. Thus, the intrusion detection in both cases was made successfully.

Last modified: 2018-01-03 16:18:46