Title
Fuzzy Logic Based Intrusion Detection System as a Service for Malicious Port Scanning Traffic Detection
Abstract
Port scanning is a cyber-network attack allows cyber terrorists to gather valuable information about target hosts namely defense, governmental and banks servers by trying to identify instantly open ports, which correspond to specific services on the cloud, such as HTTP, DNS, and email. The basic role of Intrusion Detection Systems (IDSs) is to monitor networks and systems for malicious activities, policy violations attacks and unauthorized information gathering activities. In this paper, we proposed a TCP port scanning detection framework, based on fuzzy logic controller, which uses fuzzy rules base and the Mamdani inference method. The proposed platform is a Fuzzy IDS as a Service, which enables network administrators and cyber security specialists to follow in real time the network traffic behavior, i.e., the Port Scanning Criticity Level (PSCL). A SaaS dynamic dashboard is implemented to quickly and efficiently identify malicious port scanning activities. Experimentations and evaluations showed the efficiency of the proposed system in multilevel port scanning detection compared to Snort and the related IDS systems.
Year
DOI
Venue
2019
10.1109/AICCSA47632.2019.9035263
2019 IEEE/ACS 16th International Conference on Computer Systems and Applications (AICCSA)
Keywords
DocType
ISSN
IDS,Fuzzy IDS as a Service,Port Scanning,Fuzzy logic controller,Mamdani inference,PSCL
Conference
2161-5322
ISBN
Citations 
PageRank 
978-1-7281-5053-6
0
0.34
References 
Authors
11
3
Name
Order
Citations
PageRank
Firas Saidi100.34
Zouheir Trabelsi213627.78
Henda Ben Ghazela311.36