The University of Dublin | Trinity College -- Ollscoil Átha Cliath | Coláiste na Tríonóide
TARA Trinity's Access to Research Archive
Home :: Log In :: Submit :: Alerts ::

TARA >
School of Computer Science and Statistics >
Computer Science >
Computer Science (Theses and Dissertations) >

Please use this identifier to cite or link to this item: http://hdl.handle.net/2262/1197

Title: Internet Worm Detection as part of a Distributed Network Inspection System
Author: Linehan, Eamonn
Advisor: McGoldrick, Ciaran
Keywords: Computer Science
Issue Date: Sep-2004
Abstract: The most widely publicized, and arguably most damaging, types of malicious traffic on the Internet today include worms, spam, viruses and denial of service attacks. Internet worms self propagate across networks exploiting flaws in operating systems and services, spreading viruses and congesting network links. Worms constitute a significant security and performance threat and have recently been used to facilitate distributed denial of service (dDoS) attacks. It is the aim of this dissertation to investigate approaches for detecting a wide range of malicious activity such as worms and (d)DoS. This dissertation describes the design and implementation of an object orientated framework for distributed intrusion detection. The framework features heterogeneous sensors with a configurable event source that can adapt by dynamically composing components at run-time. The sensors are controlled remotely by a management application that can configure, extend and control sensors individually. The framework is extensible and allows researchers to quickly implement and evaluated detection techniques in a live network environment. A number of components have been implemented for the framework including a component designed to detect internet worms. It was found that this component could successfully detect a range of malicious activity including worms on both low utilisation dial-up links and gateway router links.
URI: http://hdl.handle.net/2262/1197
Appears in Collections:Computer Science (Theses and Dissertations)
Computer Science Technical Reports

Files in This Item:

File Description SizeFormat
TCD-CS-2004-46.pdf1.45 MBAdobe PDFView/Open


This item is protected by original copyright


Please note: There is a known bug in some browsers that causes an error when a user tries to view large pdf file within the browser window. If you receive the message "The file is damaged and could not be repaired", please try one of the solutions linked below based on the browser you are using.

Items in TARA are protected by copyright, with all rights reserved, unless otherwise indicated.

 

Valid XHTML 1.0! DSpace Software Copyright © 2002-2010  Duraspace - Feedback