A Collaborative Approach to Situational Awareness for CyberSecurity

Authors: M. Lisa Mathews, Paul Halvorsen, Anupam Joshi, and Tim Finin

Book Title: 8th IEEE Int. Conf. on Collaborative Computing: Networking, Applications and Worksharing

Date: October 14, 2012

Abstract: Traditional intrusion detection and prevention systems have well known limitations that decrease their utility against many kinds of attacks. Creating a new system that collaboratively combines information from traditional and nontraditional sensors to produce new, relevant signatures is one way to deal with these limitations. In this paper, we present a framework that uses this collaborative approach, as well as the details for a network traffic based classifier that shows promise for detecting malicious traffic.

