全部 标题 作者
关键词 摘要

OALib Journal期刊
ISSN: 2333-9721
费用:99美元

查看量下载量

相关文章

更多...

Self-adaptive Mechanism of Dynamic Forensics
一种自适应的动态取证机制

Keywords: Dynamic forensics,Shadow honeypot,Self-adaptive,Finite state machine
动态取证
,影子蜜罐,自适应,有限状态机

Full-Text   Cite this paper   Add to My Lib

Abstract:

With the development of intrusion and computer crime technologies,dynamic forensics is becoming more and more important. Dynamic forensics based on intrusion detection and honeypot technologies has great advantage in realtime performance,whcrcas these methods arc defective in overcoming the difficulty of evidence and system reliability,and hard to seize the opportunity of investigation. A self-adaptive mechanwasm was proposed which used intrusion detection system as forensics trigger and shadow honeypot was used to verify the suspicious attack, observe and analyze the attack activities further more to gather key evidences. And then the finite state machine model of this mechanism was illuminated and key technologies such as shadow honeypot, state transition opportunity and evidence security storage method were described. The dynamic forensics system with this mechanism can tolerate intrusion in a certain degree and get the investigation process under control. Moreover, the amount of unnecessary evidences can be reduced obviously.

Full-Text

Contact Us

service@oalib.com

QQ:3279437679

WhatsApp +8615387084133