DSpace Repository

A Review of Intrusion Alerts Correlation Frameworks

Show simple item record

dc.contributor.author Chahira, Joseph Mbugua
dc.contributor.author Chuka, Jane Kinanu Kiruki
dc.contributor.author Kemei, Peter Kiprono
dc.date.accessioned 2017-02-10T16:47:00Z
dc.date.available 2017-02-10T16:47:00Z
dc.date.issued 2016
dc.identifier.citation Joseph Mbugua Chahira, Jane Kinanu Kiruki, Chuka, Peter Kiprono Kemei,"A Review of Intrusion Alerts Correlation Frameworks" in International Journal of Computer Applications Technology and Research Vol 5(4) 226 - 233, 2016. en_US
dc.identifier.issn 2319–8656
dc.identifier.uri http://localhost:8080/xmlui/handle/1/116
dc.description This Article Contains References. en_US
dc.description.abstract The advancement of modern computers, networks and internet has led to the widespread adoption and application of Information Communication Technology in modern organizations. As a result, large amount of information is generated, processed and distributed through digital devices. On the other side, digital crimes have increased in number and sophistication and they compromise the organization’s critical information infrastructure affecting the confidentiality, integrity and availability of its information resources. In order to detect these malicious activities, organizations deploys multiple Network Intrusion Detection Systems (NIDSs) in their corporate networks. They generate huge amount of low quality alerts and in different formats when an attack has already taken place. Thus Alert and event correlation is required to preprocess, analyze and correlate the alerts produced by one or more network intrusion detection systems and events generated from different systems and security tools to provide a more succinct and high-level view of occurring or attempted intrusions. This work will review current alert correlation systems in terms of approaches and propose design consideration for an efficient alert correlation technique. We conclude by highlighting the opportunity to include attack prediction component in a real time multiple sensors environment. en_US
dc.language.iso en en_US
dc.subject Alert correlation, Intrusion Detection Systems, Attacks prediction, Attack strategy, Network security. en_US
dc.title A Review of Intrusion Alerts Correlation Frameworks en_US
dc.type Article en_US


Files in this item

Files Size Format View

There are no files associated with this item.

This item appears in the following Collection(s)

  • Journal Articles [104]
    Journal papers published by Garissa University Community

Show simple item record

Search DSpace


Advanced Search

Browse

My Account