Presentation 2009-03-10
Detecting anomalies by monitoring terminals in Home Network
Kengo KUNIYOSHI, Masakatu MORII,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) The system like IDS and IPS based on the handcrafted signatures which represent the illegal characteristics is effective on a known malware and an unauthorized access, but cannot detect the unknown ones and suffer the damage. Recently as Home Network has been developed, there is a possibility that inflicts the further damage on the network due to the delay of detection. In this paper, we propose a system which can detect the unknown ones early without exception by using a database consisted of the aggregate of the running processes and the packet information on the target PCs. Our method can detect the unknown ones and decrease the false positives as time goes on. Moreover, our method is effective against the anomaly by a Root kit.
Keyword(in Japanese) (See Japanese page)
Keyword(in English) Anomaly-based / Monitoring terminal / Home Network / Malware
Paper # IT2008-94,ISEC2008-152,WBS2008-107
Date of Issue

Conference Information
Committee WBS
Conference Date 2009/3/2(1days)
Place (in Japanese) (See Japanese page)
Place (in English)
Topics (in Japanese) (See Japanese page)
Topics (in English)
Chair
Vice Chair
Secretary
Assistant

Paper Information
Registration To Wideband System(WBS)
Language JPN
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) Detecting anomalies by monitoring terminals in Home Network
Sub Title (in English)
Keyword(1) Anomaly-based
Keyword(2) Monitoring terminal
Keyword(3) Home Network
Keyword(4) Malware
1st Author's Name Kengo KUNIYOSHI
1st Author's Affiliation Graduate School of Science and Technology, Kobe University()
2nd Author's Name Masakatu MORII
2nd Author's Affiliation Graduate School of Engineering, Kobe University
Date 2009-03-10
Paper # IT2008-94,ISEC2008-152,WBS2008-107
Volume (vol) vol.108
Number (no) 474
Page pp.pp.-
#Pages 6
Date of Issue