...
首页> 外文期刊>Journal of Computers >Detection and Classification of Non-self Based on System Call Related to Security
【24h】

Detection and Classification of Non-self Based on System Call Related to Security

机译:基于安全性的系统呼叫检测和分类

获取原文
           

摘要

—Based on the immune mechanism, we present acomputer system security model used to detect and classifynon-self, which overcomes some drawbacks of traditionalcomputer immune system based on system call: the largenumber of system calls intercepted, the loss of usefulinformation owing to paying no attention to the argumentsof system calls, distinction between self and non-self just byrule matching, etc. We introduce the process of non-selfdetection and classification based on rule and Sandboxfurther distinguishing the process of unknown type, basedon the definition of system call related to security and eventrelated to security. We resolve the problem of traditionalsandbox system: the unreliability and insecurity of processand the display of process behavior incompletely caused bydenying the execution of a system call. Experimental resultsverify the effectiveness of distinguishing non-self and itsclass based on system call related to security, and show thatour model can detect non-self in Sandbox which is unknowntype by rule matching without imposing heavy performanceimpact upon operating system.
机译:- 基于免疫机制,我们呈现了用于检测和Classifyn-Self的Acomputer系统安全模型,它克服了基于系统调用的传统计算机免疫系统的一些缺点:系统调用的Largenumber截获,由于支付不关注的情况下,丧失了有用的损失在Argumentsof System呼叫中,自我和非自我之间的区别只是Byrule匹配等。我们介绍了基于规则和沙箱与区别未知类型的过程的非自我分类和分类的过程,系列了与安全性有关的系统呼叫的定义并事件到安全。我们解决了传统的问题盒系统的问题:处理的不可靠性和不安全性并显示过程行为不完全引起系统调用的执行。实验结果验证了基于与安全性的系统呼叫区分非自我和itsCrass的有效性,并显示大家模型可以通过规则匹配来检测非自我的沙箱,而不是在操作系统上施加繁重的绩效。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号