You are here: silicon.com > Tags

129 stories on

traffic intrusion

Sort by: Date | Relevance


A Parallel Architecture for Stateful Intrusion Detection in High Traffic Networks

whitepaper These issues are critical especially for Network Intrusion Detection Systems (NIDS) that need to trace and reassemble every connection, and to examine every packet flowing on the monitored link(s), to guarantee high security levels.

Tags: network security

[22 May 2008]

Network Intrusion Detection: Evasion, Traffic Normalization, and End-to-End Protocol Semantics

whitepaper A fundamental problem for network intrusion detection systems is the ability of a skilled attacker to evade detection by exploiting ambiguities in the traffic stream as seen by the monitor. This paper discusses the viability of addressing this...

Tags: network security

[22 May 2008]

Improving the Database Logging Performance of the Snort Network Intrusion Detection Sensor

whitepaper Network intrusion detection systems have become one of several invaluable tools to safeguard critical infrastructure and information. Publicly available Network Intrusion Detection Systems (NIDS) such as Snort and Bro as well as a large number of...

Tags: network security

[22 May 2008]

A Framework for Malicious Workload Generation

whitepaper To demonstrate the capability of MACE, the paper provides an analysis of stress tests conducted on a popular firewall and two popular network intrusion detection systems. Malicious traffic from self-propagating worms and denial-of-service attacks...

Tags: network security

[22 May 2008]

On the Fly Pattern Matching for Intrusion Detection With Snort

whitepaper Intrusion Detection Systems are important tools for system administrators to protect their network. The method has been successfully implemented as an extension of the Intrusion Detection System "Snort".

Tags: network security

[22 May 2008]

Honeycomb - Creating Intrusion Detection Signatures Using Honeypots

whitepaper This paper describes a system for automated generation of attack signatures for network intrusion detection systems. The system applies pattern-matching techniques and protocol conformance checks on multiple levels in the protocol hierarchy to...

Tags: network security

[22 May 2008]

Pattern Reduction and Circuit Design for Hardware-Supported Network Intrusion Detection

whitepaper Intrusion Detection Systems (IDS) suffer from be being overloaded as network rates increase. Attackers can take advantage of this bottleneck by "Blinding" it with innocuous traffic and try to slip the attack traffic by the system without detection.

Tags: network security

[22 May 2008]

Symantec Endpoint Protection for Windows XP Embedded 5.1 End User Training

whitepaper The webcast outlines how Symantec Endpoint Protection for Windows XP Embedded provides a multilayered security approach that includes an application-centric firewall, application control, intrusion prevention and detection, antivirus and policy...

Tags: embedded systems

[18 May 2008]

A Firewall for Routers: Protecting Against Routing Misbehavior

whitepaper Analogous to traffic normalization for network intrusion detection systems, the proposed RouteNormalizer patches ambiguities and eliminates semantically incorrect routing updates to protect against routing protocol attacks.

Tags: switching

[15 May 2008]

The New Data Center: Toward a Consolidated Platform

whitepaper Web servers require patches and updates to be protected from internal and external attacks, and firewalls and intrusion detection and prevention devices are often needed to prevent attacks on the application.

Tags: data center

[15 May 2008]

Traffic Analysis: From Stateful Firewall to Network Intrusion Detection System

whitepaper This paper investigates traffic analysis techniques need in stateful firewall and Network Intrusion Detection System (NIDS). This calls for the necessity of analyzing the traffic (packets) on the network.

Tags: firewalls

[24 Apr 2008]

A New Intrusion Detection System Using Support Vector Machines and Hierarchical Clustering

whitepaper Whenever an intrusion occurs, the security and value of a computer system is compromised. This can be done by sending large amounts of network traffic, exploiting well-known faults in networking services, and by overloading network hosts.

Tags: network security

[11 Apr 2008]

SPACEDIVE: A Distributed Intrusion Detection System for Voice-over-IP Environments

whitepaper Voices over IP (VoIP) systems are gaining in popularity as the technology for transmitting voice traffic over IP networks. Along with the anticipated widespread adoption of VoIP systems comes the possibility of security attacks targeted against...

Tags: voip - ip telephony

[11 Apr 2008]

Cisco Security Advisory: Cisco Secure Intrusion Detection System Signature Obfuscation Vulnerability

whitepaper Intrusion Detection Systems inspect network traffic for suspect or malicious packet formats, data payloads and traffic patterns. Intrusion detection systems typically implement obfuscation defense - ensuring that suspect packets cannot easily be...

Tags: network security, technique, detection, traffic

[10 Apr 2008]

Cisco IPS Performance

whitepaper Measuring and testing performance on Intrusion Prevention Systems requires both an understanding of the characteristics of the network environment targeted in the IPS deployment, as well as an awareness of the challenges in building an effective...

Tags: network security

[03 Apr 2008]

HISTORY - High-Speed Network Monitoring and Analysis

whitepaper Especially the employed statistical methodologies allow the usage of History for various applications in network security such as intrusion detection and traceback. The complete architecture relies on standardized protocols such as IPFIX and PSAMP...

Tags: monitoring systems

[04 Mar 2008]

Gigascope: High Performance Network Monitoring With an SQL Interface

whitepaper Many of the applications are complex (e.g.reconstruct TCP/IP sessions), query layer-7 data (find streaming media connections), operate over huge volumes of data (Gigabit and higher speed links), and have real-time reporting requirements (e.g.to...

Tags: monitoring systems

[04 Mar 2008]

Multidimensional Network Monitoring for Intrusion Detection

whitepaper The methods of data analysis and pattern recognition presented are the basis of a technology study for an automatic intrusion detection system that detects the attack in the reconnaissance stage. Applying complex systems theory for information flow...

Tags: monitoring systems

[03 Mar 2008]

Improving the Performance of Passive Network Monitoring Applications Using Locality Buffering

whitepaper This paper presents a novel approach for improving the performance of a large class of CPU and memory intensive passive network monitoring applications, such as intrusion detection systems, traffic characterization applications, and NetFlow export...

Tags: monitoring systems

[03 Mar 2008]

IPS Vs. IDS: Similar on the Surface, Polar Opposites Underneath

whitepaper A common notion is that an Intrusion Prevention System (IPS) is nothing more than an Intrusion Detection System (IDS) deployed in-line with blocking capabilities. Although IPS and IDS both examine traffic looking for attacks, there are critical...

Tags: network security

[28 Feb 2008]

Sort by: Date | Relevance


Site Map    


Quick Sitemap Links: