|
ABSTRACT
As the recent denial-of-service attacks on several major Internet sites have shown us, no open computer network is immune from intrusions. The wireless ad-hoc network is particularly vulnerable due to its features of open medium, dynamic changing topology, cooperative algorithms, lack of centralized monitoring and management point, and lack of a clear line of defense. Many of the intrusion detection techniques developed on a fixed wired network are not applicable in this new environment. How to do it differently and effectively is a challenging research problem. In this paper, we first examine the vulnerabilities of a wireless ad-hoc network, the reason why we need intrusion detection, and the reason why the current methods cannot be applied directly. We then describe the new intrusion detection and response mechanisms that we are developing for wireless ad-hoc networks.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
W. W. Cohen. Fast effective rule induction. In Machine Learning: the 12th International Conference, Lake Taho, CA, 1995. Morgan Kaufmann.
|
| |
2
|
|
| |
3
|
A. K. Ghosh and A. Schwartzbaxd. A study in using neural networks for anomaly and misuse detection. In Proceedings of the 8th USENIX Security Symposium, 1999.
|
| |
4
|
R. Heady, G. Luger, A. Maccabe, and M. Servilla. The architecture of a network level intrusion detection system. Technical report, Computer Science Department, University of New Mexico, August 1990.
|
| |
5
|
|
| |
6
|
V. Jacobson, C. Leres, and S. McCanne. tcpdump. available via anonymous ftp to ftp.ee.lbl.gov, June 1989.
|
| |
7
|
D. B. Johnson and D. A. Maltz. Dynamic source routing in ad hoc wireless networks. In T. Imielinski and H. Korth, editors, Mobile Computing, pages 153-181. Kluwer Academic Publishers, 1996.
|
| |
8
|
S. Kumar and E. H. Spafford. A software architecture to support misuse intrusion detection. In Proceedings of the 18th National Information Security Conference, pages 194-204, 1995.
|
 |
9
|
|
| |
10
|
W. Lee, S. J. Stolfo, and K. W. Mok. A data mining framework for building intrusion detection models. In Proceedings of the 1999 IEEE Symposium on Security and Privacy, May 1999.
|
| |
11
|
|
| |
12
|
T. Lunt, A. Tamaru, F. Gilham, R. Jagannathan, P. Neumann, H. Javitz, A. Valdes, and T. Garvey. A real-time intrusion detection expert system (IDES) - final technical report. Technical report, Computer Science Laboratory, SRI International, Menlo Park, California, February 1992.
|
| |
13
|
D. A. Maltz, J. Broch, j. Jetcheva, and D. B. Johnson. The effects of on-demand behavior in routing protocols for multi-hop wireless ad hoc networks. IEEE Journal on Selected Areas in Communications, Aug. 1999.
|
| |
14
|
E. Royer and C.-K. Toh. A review of current routing protocols for ah hoc mobile wireless networks. IEEE Personal Communication, 6(2):46-55, Apr. 1999.
|
| |
15
|
M. Satyanarayanan, J. J. Kistler, L. B. Mummert, M. R. Ebling, P. Kumar, and Q. Lu. Experiences with disconnected operation in a mobile environment. In Proceedings of USENIX Symposium on Mobile and Location Independant Computing, pages 11-28, Cambridge, Massachusetts, Aug. 1993.
|
| |
16
|
|
| |
17
|
L. Zhou and Z. J. Haas. Securing ah hoc networks. IEEE Network, 13(6):24-30, Nov/Dec 1999.
|
CITED BY 84
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Hao Yang , Xiaoqiao Meng , Songwu Lu, Self-organized network-layer security in mobile ad hoc networks, Proceedings of the 3rd ACM workshop on Wireless security, p.11-20, September 28-28, 2002, Atlanta, GA, USA
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
K. Jones , A. Wadaa , S. Olariu , L. Wilson , M. Eltoweissy, Towards a new paradigm for securing wireless sensor networks, Proceedings of the 2003 workshop on New security paradigms, August 18-21, 2003, Ascona, Switzerland
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Maxim Raya , Jean-Pierre Hubaux , Imad Aad, DOMINO: a system to detect greedy behavior in IEEE 802.11 hotspots, Proceedings of the 2nd international conference on Mobile systems, applications, and services, June 06-09, 2004, Boston, MA, USA
|
|
|
|
|
|
|
|
|
|
|
|
Chin-Yang Tseng , Poornima Balasubramanyam , Calvin Ko , Rattapon Limprasittiporn , Jeff Rowe , Karl Levitt, A specification-based intrusion detection system for AODV, Proceedings of the 1st ACM workshop on Security of ad hoc and sensor networks, October 31, 2003, Fairfax, Virginia
|
|
|
|
|
|
Bo Sun , Fei Yu , Kui Wu , Victor C. M. Leung, Mobility-based anomaly detection in cellular mobile networks, Proceedings of the 2004 ACM workshop on Wireless security, October 01-01, 2004, Philadelphia, PA, USA
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
M. Hejmo , B. L. Mark , C. Zouridaki , R. K. Thomas, On the fairness of flow aggregation for denial-of-service resistant QoS in MANETs, Proceedings of the 3rd international conference on Quality of service in heterogeneous wired/wireless networks, August 07-09, 2006, Waterloo, Ontario, Canada
|
|
|
Danny Dhillon , Jerry Zhu , John Richards , Tejinder Randhawa, Implementation & evaluation of an IDS to safeguard OLSR integrity in MANETs, Proceeding of the 2006 international conference on Communications and mobile computing, July 03-06, 2006, Vancouver, British Columbia, Canada
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
A. Patwardhan , J. Parker , M. Iorga , A. Joshi , T. Karygiannis , Y. Yesha, Threshold-based intrusion detection in ad hoc networks and secure AODV, Ad Hoc Networks, v.6 n.4, p.578-599, June, 2008
|
|
|
|
|
|
|
|
|
Leonardo B. Oliveira , Adrian Ferreira , Marco A. Vilaça , Hao Chi Wong , Marshall Bern , Ricardo Dahab , Antonio A. F. Loureiro, SecLEACH-On the security of clustered sensor networks, Signal Processing, v.87 n.12, p.2882-2895, December, 2007
|
|
|
Hadi Otrok , Noman Mohammed , Lingyu Wang , Mourad Debbabi , Prabir Bhattacharya, A game-theoretic intrusion detection model for mobile ad hoc networks, Computer Communications, v.31 n.4, p.708-721, March, 2008
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|