本文已被:浏览 1332次 下载 2585次
Received:June 09, 2013 Revised:July 04, 2013
Received:June 09, 2013 Revised:July 04, 2013
中文摘要: 提出了一种基于数值分析的异常扫描行为监测方法, 以Netflow网管数据为基础, 设计开发了监测系统, 实现了对网络中主流网络蠕虫病毒、IRC僵尸木马的传播爆发以及黑客恶意扫描探测等异常行为的实时监测, 取得良好效果, 大幅提升了网络运营单位的网络安全支撑服务能力。
Abstract:This paper introduces an abnormal scan behavior monitoring methods based on numerical analysis. It designs and develops a monitoring system with Netflow network management data, to achieve real-time monitoring for abnormal behaviors such as network worms, IRC Trojan zombie outbreak and spreading of malicious scan by hackers, etc. The system shows significant implement results, and increase network security support service capabilities of ISP.
keywords: abnormal scan behavior monitor network security
文章编号: 中图分类号: 文献标志码:
基金项目:中国科学院“十二五”信息化专项——中国科学院网络安全保障与服务工程
引用文本:
荆涛,李俊.基于数值分析的异常扫描行为监测系统.计算机系统应用,2014,23(1):49-52
JING Tao,LI Jun.Abnormal Scan Behavior Monitoring System Based on Numerical Analysis.COMPUTER SYSTEMS APPLICATIONS,2014,23(1):49-52
荆涛,李俊.基于数值分析的异常扫描行为监测系统.计算机系统应用,2014,23(1):49-52
JING Tao,LI Jun.Abnormal Scan Behavior Monitoring System Based on Numerical Analysis.COMPUTER SYSTEMS APPLICATIONS,2014,23(1):49-52