The UGR analyses the modelling of the behaviour of the communication networks in hacking detection

The Department of Electronics of the University of Granada (Universidad de Granada [http://www.ugr.es])has published in the international journal Computer Networks a paper suggesting a series of techniques to model the normal traffic in the Internet and identify hackings based on anomalies detection.

Specifically, the techniques have been focused on the protocol HTTP “with which more than 70% of the network activity works, such as the main trade services of the web”, Juan Manuel Estévez Tapiador, author of the paper together with Pedro García Teodoro and Jesús Díaz Verdejo, points out.

The work has developed in two phases: statistical analysis of normal and hostile traffic and proposal of a new approach to detect attacks in HTTP traffic. The first stage is useful to define statistically, by means iof techniques such as Markov chains, a notion of the normal behaviour of a network and the later detection of anomalous happenings when operating. “In general, the concept of attack is not well defined unless we start from a security policy, established by the system administrator to keep the control of the network”, Estévez says.

The idea is to design warnings as counter-measures to tackle the threats of the Internet. These works mean an improvement of present IDS. They are softwares (computer programs) capable of monitoring everything happening in the Internet, such as users' requests addressed to web servers. Definitely, everything that enters or leaves the Internet, identifying if it keeps with the normal activity or there is somebody trying to violate the security system.

Doctoral thesis

The Department of Electronics of the UGR has proposed a general methodology to build detectors, including aspects like where they must be placed in the Internet and what kind of information must be supervised. The article starts from a theoretical review of previous contributions carried out by a research group of the University of California on security in the Internet and has opened a door to design new detection techniques, the topic of Estévez Tapiador's doctoral thesis, read in 2004.

Media Contact

Antonio Marín Ruiz alfa

All latest news from the category: Information Technology

Here you can find a summary of innovations in the fields of information and data processing and up-to-date developments on IT equipment and hardware.

This area covers topics such as IT services, IT architectures, IT management and telecommunications.

Back to home

Comments (0)

Write a comment

Newest articles

“Nanostitches” enable lighter and tougher composite materials

In research that may lead to next-generation airplanes and spacecraft, MIT engineers used carbon nanotubes to prevent cracking in multilayered composites. To save on fuel and reduce aircraft emissions, engineers…

Trash to treasure

Researchers turn metal waste into catalyst for hydrogen. Scientists have found a way to transform metal waste into a highly efficient catalyst to make hydrogen from water, a discovery that…

Real-time detection of infectious disease viruses

… by searching for molecular fingerprinting. A research team consisting of Professor Kyoung-Duck Park and Taeyoung Moon and Huitae Joo, PhD candidates, from the Department of Physics at Pohang University…

Partners & Sponsors