Approach to early detection and defense against internet worms

A distributed defense mechanism was proposed.The main task of defense mechanism was to quickly detect worm attacks and response to constrain their propagation.The defense mechanism was composed of two parts: a date processing centre(DPC) and distributed sensors for defending against worm attacks.DPC...

Full description

Saved in:
Bibliographic Details
Main Authors: CHEN Bo, FANG Bin-xing, YUN Xiao-chun
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2007-01-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/74662228/
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:A distributed defense mechanism was proposed.The main task of defense mechanism was to quickly detect worm attacks and response to constrain their propagation.The defense mechanism was composed of two parts: a date processing centre(DPC) and distributed sensors for defending against worm attacks.DPC is responsible for receiving the result of each distributed sensor and computing the number of infected computer.These distributed sensors monitor the network and detect worm.Once a worm attack was detected,a dropping packet mechanism is used so that the worm propagation was con-strained,and the number of interference with normal activity is minimized.The experimental results prove the robustness and efficiency of the proposed defense mechanism.
ISSN:1000-436X