Search
 Advanced SearchView Cart   Checkout   
 Location:  Home » Books » Network Security » NetHost-sensor: Monitoring a target host's application via system calls [An article from: Information Security Technical Report]July 4, 2008  
Browse
Books
Computers
Electronics
Related Categories
• Network Security
Networking
Computers & Internet
Subjects
Books
• Online Books
Books & Reading
Literature & Fiction
Subjects
Books
NetHost-sensor: Monitoring a target host's application via system calls [An article from: Information Security Technical Report]
NetHost-sensor: Monitoring a target host's application via system calls [An article from: Information Security Technical Report]
Authors: A.a. Abimbola, J.m. Munoz, W.j. Buchanan
Publisher: Elsevier
Category: Book

Buy New: $7.95

Format: Html
Media: Digital

ASIN: B000PC0RPG

Publication Date: January 2006
Shipping: Eligible for Super Saver Shipping
Availability: Available for download now

Editorial Reviews:

Product Description
This digital document is a journal article from Information Security Technical Report, published by Elsevier in 2006. The article is delivered in HTML format and is available in your Amazon.com Media Library immediately after purchase. You can view it with any web browser.

Description:
Intrusion detection has emerged as an important approach to network, host and application security. Network security includes analysing network packet payload and other inert network packet profiles for intrusive trends; whereas, host security may employ system logs for intrusion detection. In this paper, we contribute to the research community by tackling application security and attempt to detect intrusion via differentiating normal and abnormal application behaviour. A method for anomaly intrusion detection for applications is proposed based on deterministic system call traces derived from a monitored target application's dynamic link libraries (DLLs). We isolate associated DLLs of a monitored target application; log system call traces of the application in real time and use heuristic method to detect intrusion before the application is fully compromised. Our investigative research experiment methodology and set-up are reported, alongside our experimental procedure and results that show our research effort is effective and efficient, and can be used in practice to monitor a target application in real time.


Powered by: Dknc, inc. and Amazon.com


For your safety and security, orders are processed through amazon.com