From intrusion detection to an intrusion response system: Fundamentals, requirements, and future directions

Shahid Anwar*, Jasni Mohamad Zain, Mohamad Fadli Zolkipli, Zakira Inayat, Suleman Khan, Bokolo Anthony, Victor Chang

*Corresponding author for this work

Research output: Contribution to journalReview articlepeer-review

151 Citations (Scopus)

Abstract

In the past few decades, the rise in attacks on communication devices in networks has resulted in a reduction of network functionality, throughput, and performance. To detect and mitigate these network attacks, researchers, academicians, and practitioners developed Intrusion Detection Systems (IDSs) with automatic response systems. The response system is considered an important component of IDS, since without a timely response IDSs may not function properly in countering various attacks, especially on a real-time basis. To respond appropriately, IDSs should select the optimal response option according to the type of network attack. This research study provides a complete survey of IDSs and Intrusion Response Systems (IRSs) on the basis of our in-depth understanding of the response option for different types of network attacks. Knowledge of the path from IDS to IRS can assist network administrators and network staffs in understanding how to tackle different attacks with state-of-the-art technologies.

Original languageEnglish
Article number39
JournalAlgorithms
Volume10
Issue number2
DOIs
Publication statusPublished - 1 Jun 2017

Keywords

  • Attacks
  • Information security
  • Intrusion
  • Intrusion detection
  • Response option

Fingerprint

Dive into the research topics of 'From intrusion detection to an intrusion response system: Fundamentals, requirements, and future directions'. Together they form a unique fingerprint.

Cite this