Abstract

Computer network security is an important aspect of computer science. Many researchers are trying to increase security using different methods, technologies, or tools. One of the most common practices is the deployment of an Intrusion Detection System (IDS). The current state of IDS brings only passive protection from network intrusions, i.e., IDS can only detect possible intrusions. Due to that, the manual intervention of an administrator is needed. In our paper, we present a logical model of an active IDS based on category theory, coalgebras, linear logic, and Belief–Desire–Intention (BDI) logic. Such an IDS can not only detect intrusions but also autonomously react to them according to a defined security policy. We demonstrate our approach on a motivating example with real network intrusions.

Highlights

  • In today’s information society, computer security is undoubtedly a very important area of research

  • The rapid technological development has brought the advent of personal computers, laptops, smart devices, the Internet of Things (IoT), etc., which means computers are already involved in every aspect of human life

  • We presented a new approach that extends the current functionalities of intrusion detection systems using active reactions to detect intrusions

Read more

Summary

Introduction

In today’s information society, computer security is undoubtedly a very important area of research. The rapid technological development has brought the advent of personal computers, laptops, smart devices, the Internet of Things (IoT), etc., which means computers are already involved in every aspect of human life. Various sensitive and confidential information flows evermore through the network. This brings the necessity to secure that information from falling into malicious hands

Motivation
Work Plan
Structure of the Paper
Related Works and Our Proposition
Contributions
Overview of the Methods Used
Many-Typed Signature
Category Theory
Coalgebra for a Polynomial Endofunctor
Linear Logic
BDI Logic
Linear BDI Logic
Syntax of Linear BDI Logic
Semantics of Linear BDI Logic
Logical Model for Active IDS
Many-Typed Signatures of Network Intrusions
Category of Packets
Coalgebra Determined by the Polynomial Endofunctor over Category of C Packets
From Knowledge to Belief
Desires
Intentions
Conclusions
Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call