Network Traffic Anomaly Detection and Prevention Concepts, Techniques, and Tools için kapak resmi
Network Traffic Anomaly Detection and Prevention Concepts, Techniques, and Tools
Başlık:
Network Traffic Anomaly Detection and Prevention Concepts, Techniques, and Tools
Yazar:
Bhuyan, Monowar H. author.
ISBN:
9783319651880
Edisyon:
1st ed. 2017.
Fiziksel Niteleme:
XXII, 263 p. 98 illus., 9 illus. in color. online resource.
Seri:
Computer Communications and Networks,
İçindekiler:
Introduction -- Networks and Network Traffic Anomalies -- A Systematic Hands-on Approach to Generate Real-Life Intrusion Datasets -- Network Traffic Anomaly Detection Techniques and Systems -- Alert Management and Anomaly Prevention Techniques -- Practical Tools for Attackers and Defenders -- Evaluation Criteria -- Open Issues, Challenges and Conclusion.
Özet:
This indispensable text/reference presents a comprehensive overview on the detection and prevention of anomalies in computer network traffic, from coverage of the fundamental theoretical concepts to in-depth analysis of systems and methods. Readers will benefit from invaluable practical guidance on how to design an intrusion detection technique and incorporate it into a system, as well as on how to analyze and correlate alerts without prior information. Topics and features: Introduces the essentials of traffic management in high speed networks, detailing types of anomalies, network vulnerabilities, and a taxonomy of network attacks Describes a systematic approach to generating large network intrusion datasets, and reviews existing synthetic, benchmark, and real-life datasets Provides a detailed study of network anomaly detection techniques and systems under six different categories: statistical, classification, knowledge-base, cluster and outlier detection, soft computing, and combination learners Examines alert management and anomaly prevention techniques, including alert preprocessing, alert correlation, and alert post-processing Presents a hands-on approach to developing network traffic monitoring and analysis tools, together with a survey of existing tools Discusses various evaluation criteria and metrics, covering issues of accuracy, performance, completeness, timeliness, reliability, and quality Reviews open issues and challenges in network traffic anomaly detection and prevention This informative work is ideal for graduate and advanced undergraduate students interested in network security and privacy, intrusion detection systems, and data mining in security. Researchers and practitioners specializing in network security will also find the book to be a useful reference. Dr. Monowar H. Bhuyan is an Associate Professor and Head of the Department of Computer Science and Engineering at Kaziranga University, Jorhat, India. Dr. Dhruba K. Bhattacharyya is a Professor in the Department of Computer Science and Engineering at Tezpur University, India. Dr. Jugal K. Kalita is a Professor in the Department of Computer Science at the University of Colorado, Colorado Springs, CO, USA.