Multivariable Heuristic Approach to Intrusion Detection in Network Environments

The Internet is an inseparable part of our contemporary lives. This means that protection against threats and attacks is crucial for major companies and for individual users. There is a demand for the ongoing development of methods for ensuring security in cyberspace. A crucial cybersecurity solutio...

Full description

Bibliographic Details
Main Authors: Marcin Niemiec, Rafał Kościej, Bartłomiej Gdowski
Format: Article
Language:English
Published: MDPI AG 2021-06-01
Series:Entropy
Subjects:
Online Access:https://www.mdpi.com/1099-4300/23/6/776
id doaj-d542f596c1574ec09751377bf74873cb
record_format Article
spelling doaj-d542f596c1574ec09751377bf74873cb2021-07-01T00:36:04ZengMDPI AGEntropy1099-43002021-06-012377677610.3390/e23060776Multivariable Heuristic Approach to Intrusion Detection in Network EnvironmentsMarcin Niemiec0Rafał Kościej1Bartłomiej Gdowski2AGH University of Science and Technology, Department of Telecommunications, Mickiewicza 30, 30-059 Krakow, PolandAGH University of Science and Technology, Department of Telecommunications, Mickiewicza 30, 30-059 Krakow, PolandAGH University of Science and Technology, Department of Telecommunications, Mickiewicza 30, 30-059 Krakow, PolandThe Internet is an inseparable part of our contemporary lives. This means that protection against threats and attacks is crucial for major companies and for individual users. There is a demand for the ongoing development of methods for ensuring security in cyberspace. A crucial cybersecurity solution is intrusion detection systems, which detect attacks in network environments and responds appropriately. This article presents a new multivariable heuristic intrusion detection algorithm based on different types of flags and values of entropy. The data is shared by organisations to help increase the effectiveness of intrusion detection. The authors also propose default values for parameters of a heuristic algorithm and values regarding detection thresholds. This solution has been implemented in a well-known, open-source system and verified with a series of tests. Additionally, the authors investigated how updating the variables affects the intrusion detection process. The results confirmed the effectiveness of the proposed approach and heuristic algorithm.https://www.mdpi.com/1099-4300/23/6/776cybersecurityintrusion detectionnetwork attackheuristic algorithm, flagsentropy
collection DOAJ
language English
format Article
sources DOAJ
author Marcin Niemiec
Rafał Kościej
Bartłomiej Gdowski
spellingShingle Marcin Niemiec
Rafał Kościej
Bartłomiej Gdowski
Multivariable Heuristic Approach to Intrusion Detection in Network Environments
Entropy
cybersecurity
intrusion detection
network attack
heuristic algorithm, flags
entropy
author_facet Marcin Niemiec
Rafał Kościej
Bartłomiej Gdowski
author_sort Marcin Niemiec
title Multivariable Heuristic Approach to Intrusion Detection in Network Environments
title_short Multivariable Heuristic Approach to Intrusion Detection in Network Environments
title_full Multivariable Heuristic Approach to Intrusion Detection in Network Environments
title_fullStr Multivariable Heuristic Approach to Intrusion Detection in Network Environments
title_full_unstemmed Multivariable Heuristic Approach to Intrusion Detection in Network Environments
title_sort multivariable heuristic approach to intrusion detection in network environments
publisher MDPI AG
series Entropy
issn 1099-4300
publishDate 2021-06-01
description The Internet is an inseparable part of our contemporary lives. This means that protection against threats and attacks is crucial for major companies and for individual users. There is a demand for the ongoing development of methods for ensuring security in cyberspace. A crucial cybersecurity solution is intrusion detection systems, which detect attacks in network environments and responds appropriately. This article presents a new multivariable heuristic intrusion detection algorithm based on different types of flags and values of entropy. The data is shared by organisations to help increase the effectiveness of intrusion detection. The authors also propose default values for parameters of a heuristic algorithm and values regarding detection thresholds. This solution has been implemented in a well-known, open-source system and verified with a series of tests. Additionally, the authors investigated how updating the variables affects the intrusion detection process. The results confirmed the effectiveness of the proposed approach and heuristic algorithm.
topic cybersecurity
intrusion detection
network attack
heuristic algorithm, flags
entropy
url https://www.mdpi.com/1099-4300/23/6/776
work_keys_str_mv AT marcinniemiec multivariableheuristicapproachtointrusiondetectioninnetworkenvironments
AT rafałkosciej multivariableheuristicapproachtointrusiondetectioninnetworkenvironments
AT bartłomiejgdowski multivariableheuristicapproachtointrusiondetectioninnetworkenvironments
_version_ 1721348216940658688