• Title/Summary/Keyword: Detecion

Search Result 13, Processing Time 0.041 seconds

An Intelligent Intrusion Detection Model

  • Han, Myung-Mook
    • Proceedings of the Korean Institute of Intelligent Systems Conference
    • /
    • 2003.09a
    • /
    • pp.224-227
    • /
    • 2003
  • The Intrsuion Detecion Systems(IDS) are required the accuracy, the adaptability, and the expansion in the information society to be changed quickly. Also, it is required the more structured, and intelligent IDS to protect the resource which is important and maintains a secret in the complicated network environment. The research has the purpose to build the model for the intelligent IDS, which creates the intrusion patterns. The intrusion pattern has extracted from the vast amount of data. To manage the large size of data accurately and efficiently, the link analysis and sequence analysis among the data mining techniqes are used to build the model creating the intrusion patterns. The model is consist of "Time based Traffic Model", "Host based Traffic Model", and "Content Model", which is produced the different intrusion patterns with each model. The model can be created the stable patterns efficiently. That is, we can build the intrusion detection model based on the intelligent systems. The rules prodeuced by the model become the rule to be represented the intrusion data, and classify the normal and abnormal users. The data to be used are KDD audit data.

  • PDF

Performances of Various AGC Algorithms for IEEE802.11p WAVE

  • Jin, Seong-Keun;Yoon, Sang-Hun;Shin, Dae-Kyo
    • Journal of IKEEE
    • /
    • v.18 no.4
    • /
    • pp.502-508
    • /
    • 2014
  • This paper has reviewed the performances of various AGCs which can be adopted in IEEE802.11p modems. IEEE802.11p, a high speed mobile communication standard for vehicles, requires high performance signal detector since the channel impulse responses are varied rapidly in time. In order to select the optimal signal detector, we simulated the performances of three detection methods. One is using RSSI signal, the other is using RSSI signal and I/Q signal, and the third is using I/Q signal through the Monte Carlo simulation. We evaluated the performances of the algorithms using our own system based on MAX 2829 transceiver(MAXIM $Integrated^{TM}$) in a real vehicular environment. As a result, the experiment using Fully I/Q signal derives the most excellent performance with the lowest minimum receiver sensitivity, packet error rate (PER) and false alarm rate (FAR).

Masquerade Detection based on SVM and Sequence-based Kernel Method (순서 기반의 커널과 SVM을 사용한 신분위장공격 탐지)

  • Seo Jeongseok;Lee Yeongseok;Kim Han-Sung;Cha Sungdeok
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2005.07a
    • /
    • pp.127-129
    • /
    • 2005
  • 신분위장공격 탐지는 오랫동안 연구되어 왔지만 실제 시스템에 적용되어 사용되기에는 여전이 높은 오탐지율(false alarm)과 낮은 탐지력(detecion rate)이 가장 큰 문제였다. 유닉스 시스템에서 신분위장공격을 탐지하기 위하여 사용자의 유닉스 명령어 행위를 프로파일링하고 정상 프로파일링에서 벗어난 권한 도용을 탐지하는 방법을 사용한다. 본 연구에서는 신분위장공격 탐지 시스템의 탐지력을 높이기 위하여 순서 정보를 반영한 SVM 커널 기법을 고찰하고 실험 결과를 정리하였다.

  • PDF

A study on correspondence problem of stereo vision system using self-organized neural network

  • Cho, Y.B.;Gweon, D.G.
    • Journal of the Korean Society for Precision Engineering
    • /
    • v.10 no.4
    • /
    • pp.170-179
    • /
    • 1993
  • In this study, self-organized neural network is used to solve the vorrespondence problem of the axial stereo image. Edge points are extracted from a pair of stereo images and then the edge points of rear image are assined to the output nodes of neural network. In the matching process, the two input nodes of neural networks are supplied with the coordi- nates of the edge point selected randomly from the front image. This input data activate optimal output node and its neighbor nodes whose coordinates are thought to be correspondence point for the present input data, and then their weights are allowed to updated. After several iterations of updating, the weights whose coordinates represent rear edge point are converged to the coordinates of the correspondence points in the front image. Because of the feature map properties of self-organized neural network, noise-free and smoothed depth data can be achieved.

  • PDF

A Study on Unknown Malware Detection using Digital Forensic Techniques (디지털 포렌식 기법을 활용한 알려지지 않은 악성코드 탐지에 관한 연구)

  • Lee, Jaeho;Lee, Sangjin
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.24 no.1
    • /
    • pp.107-122
    • /
    • 2014
  • The DDoS attacks and the APT attacks occurred by the zombie computers simultaneously attack target systems at a fixed time, caused social confusion. These attacks require many zombie computers running attacker's commands, and unknown malware that can bypass detecion of the anti-virus products is being executed in those computers. A that time, many methods have been proposed for the detection of unknown malware against the anti-virus products that are detected using the signature. This paper proposes a method of unknown malware detection using digital forensic techniques and describes the results of experiments carried out on various samples of malware and normal files.

P2P traffic Detecion and QoS Control Algorithm based Passive Monitoring (Passive Monitoring 기반의 P2P 트래픽 탐지 및 QoS 제어기법)

  • Kim, Hee-Joon;Han, Min-Kyu;Sung, Baek-Dong;Hong, Jin-Pyo
    • Proceedings of the Korean Information Science Society Conference
    • /
    • 2007.06d
    • /
    • pp.477-482
    • /
    • 2007
  • 최근 다양한 P2P 프로그램을 많이 사용함에 따라 네트워크에서 생겨나는 트래픽의 상당 부분이 P2P가 발생시키는 트래픽으로 이미 HTTP, FTP의 양을 훨씬 뛰어넘고 있다. 현재 인터넷 환경에서 방화벽을 통과하기 위해 포트번호를 변경하여 통신을 하는 새로운 P2P응용들의 행동들은 전통적인 well-known port 기반의 응용프로그램을 구분하는 단순한 분석 방법만으로 신뢰하기가 어렵다. 새로운 P2P 응용들과 같은 트래픽 모니터링의 정확도를 높이기 위해서는 TCP/IP 헤더만이 아니라 패킷이 담고 있는 페이로드 내용에 대한 조사 차원의 모니터링 방법이 필요하다. 본 논문에서는 TCP/IP 헤더 정보와 더불어 패킷의 페이로드 내용을 조사하여 P2P 트래픽을 탐지하는 모니터링 기법을 제안한다. 이어 탐지되는 P2P 트래픽에 대하여 Linux Netfilter Framework의 Queuing Discipline에서 제공하는 계층적인 우선순위 큐를 사용하여 일정한 양의 대역폭을 할당하는 정책을 적용함으로써 안정적이면서 효율적인 네트워크 운용 방안을 제시한다.

  • PDF

Study on improvement of the pupil motion recognition algorithm for human-computer interface system (사람 기계간 의사소통 시스템을 위한 눈동자 모션 인식 알고리즘 개선에 대한 연구)

  • Heo, Seung Won;Lee, Hee Bin;Lee, Seung Jun;Yu, Yun Seop
    • Proceedings of the Korean Institute of Information and Commucation Sciences Conference
    • /
    • 2018.10a
    • /
    • pp.377-378
    • /
    • 2018
  • This paper introduce the improvement of the pupil motion recognition algorithm in the previously reported "Eye-Motion Communication System using FPGA and OpenCV". It is a system for generalized paralysis and Lou Gehrig patients who can not move their body naturally, recognizing the pupil's motion and selecting the text in the FPGA in real time. In this paper, we improve the speed of motion recognition by minimizing the operation of eye detection function based on the user being general paralysis patient.

  • PDF

A Study on Shape Warpage Defect Detecion Model of Scaffold Using Deep Learning Based CNN (CNN 기반 딥러닝을 이용한 인공지지체의 외형 변형 불량 검출 모델에 관한 연구)

  • Lee, Song-Yeon;Huh, Yong Jeong
    • Journal of the Semiconductor & Display Technology
    • /
    • v.20 no.1
    • /
    • pp.99-103
    • /
    • 2021
  • Warpage defect detecting of scaffold is very important in biosensor production. Because warpaged scaffold cause problem in cell culture. Currently, there is no detection equipment to warpaged scaffold. In this paper, we produced detection model for shape warpage detection using deep learning based CNN. We confirmed the shape of the scaffold that is widely used in cell culture. We produced scaffold specimens, which are widely used in biosensor fabrications. Then, the scaffold specimens were photographed to collect image data necessary for model manufacturing. We produced the detecting model of scaffold warpage defect using Densenet among CNN models. We evaluated the accuracy of the defect detection model with mAP, which evaluates the detection accuracy of deep learning. As a result of model evaluating, it was confirmed that the defect detection accuracy of the scaffold was more than 95%.

A Comparison of three Enrichment Media for Isolating Salmonella (Salmonella균(菌) 분리용(分離用) 증균배지(增菌培地)의 비교실험(比較實驗))

  • Kim, Yong-Ja;Lee, Seung-Yun;Park, Kee-Deuk;Min, Chang-Hong
    • The Journal of the Korean Society for Microbiology
    • /
    • v.11 no.1
    • /
    • pp.33-48
    • /
    • 1976
  • The practical significance of using a selective enrichment procedure for detecion and enumeration of salmonella is well recognized. There are still various selective enrichment media has been communly used. Early years selenite broth was recomnended as an enrichment media for the isolating of salmonella. Hajna introduced a modified tetrathionate broth and demonstrated the greater efficiency to compare with the previous enrichment media. Raj also described that the new medium called dulcitol selenite enrichment and has been found to be very satisfactory, especially general implication in food poisoning. Authors tried to compare these 3 enrichment media for isolating salmonella. 1. When salmonella strains were inoculated $1{\sim}10^6$ cells per tube to these 3 enrichment media, mostly similar results were obtained between selenite broth and DS broth. In these 2 enrichment broth were showed $10^7/ml-10^8/ml$ cells of all tested salmonella strains. But in the case of TT broth it was found that the growth was $10^3/ml{\sim}10^4/ml$ cells for tested strain. 2. When E. coli, Proteus, Citrobacter were inoculate $10{\sim}10^6$ cells per tube to these 3 enrichment media. It was suggested that DS broth was showed more inhibitory action than that of selenite broth. TT broth showed high inhibition to these 3 organisms tested. 3. It was generally known that the incubation time is influenced to the frequency of salmonella detection. For this tendency, DS broth and selenite broth were showed similar results within 24 hrs to 48hrs incubation to the test. But DS broth showed more inhibitory action to E. coli and Proteus than that of selenite broth. 4. When $1{\sim}10$ cells were inoculated(per tube) to these 3 enrichment media, DS broth was found to be more sensitive than that of selenite broth.

  • PDF