Cyber Weather Forecasting: Forecasting Unknown Internet Worms Using Randomness Analysis
نویسندگان
چکیده
Since early responses are crucial to reduce the damage from unknown Internet attacks, our first consideration while developing a defense mechanism can be on time e ciency and observing (and predicting) the change of network statuses, even at the sacrifice of accuracy. In the recent security field, it is an earnest desire that a new mechanism to predict unknown future Internet attacks needs to be developed. This motivates us to study forecasting toward future Internet atacks, which is referred to as CWF (Cyber Weather Forecasting). In this paper, in order to show that the principle of CWF can be realized in the real-world, we propose a forecasting mechanism called FORE (FOrecasting using REgression analysis) through the real-time analysis of the randomness in the network tra c. FORE responds against unknown worms 1.8 times faster than the early detection mechanism, named ADUR (Anomaly Detection Using Randomness check), that can detect the worm when only one percent of total number of vulnerable hosts are infected. Furthermore, FORE can give us timely information about the process of the change of the current network situation. Evaluation results demonstrate the prediction e ciency of the proposed mechanism, including the ability to predict worm behaviors starting from 0.03 percent infection. To our best knowledge, this is the first study to achieve the prediction of future Internet attacks.
منابع مشابه
Malware in the Future? Forecasting Analyst Detection of Cyber Events
Cyber attacks endanger physical, economic, social, and political security. We use a Bayesian state space model to forecast the number of future cyber attacks. Cyber attacks were defined as malware detected by cyber analysts over seven years using cyber events (i.e., reports of malware attacks supported by evidence) at a large Computer Security Service Provider (CSSP). This CSSP protects a varie...
متن کاملHybrid Intrusion Forecasting Framework for Early Warning System
Recently, cyber attacks have become a serious hindrance to the stability of Internet. These attacks exploit interconnectivity of networks, propagate in an instant, and have become more sophisticated and evolutionary. Traditional Internet security systems such as firewalls, IDS and IPS are limited in terms of detecting recent cyber attacks in advance as these systems respond to Internet attacks ...
متن کاملShort Term Load Forecasting by Using ESN Neural Network Hamedan Province Case Study
Abstract Forecasting electrical energy demand and consumption is one of the important decision-making tools in distributing companies for making contracts scheduling and purchasing electrical energy. This paper studies load consumption modeling in Hamedan city province distribution network by applying ESN neural network. Weather forecasting data such as minimum day temperature, average day temp...
متن کاملThe Floodrelief Internet-based Flood Forecasting Decision Support System
For operational flood forecasting and operational decision-makers, ready access to current and forecasted meteorological conditions is essential for initiating flood response measures and issuing flood warnings. Effective flood forecasting systems must provide reliable, accurate and timely forecasts for a range of catchments; from small rapidly responding urban areas, to large, more slowly resp...
متن کاملArtificial Neural Networks’ Application in Weather Forecasting – Using RapidMiner
Weather forecasting is a crucial phenomenon in today’s world. Though weather prediction is completely automated, with the help of tools like Weather Research & Forecasting (WRF), Advanced Research WRF (ARW), Weather Processing System (WPS), it’s a ever challenging and a topic of interest because prediction is not an accurate always. Weather forecasting is a continuous, high dimensional, dynamic...
متن کامل