• KSII Transactions on Internet and Information Systems
    Monthly Online Journal (eISSN: 1976-7277)

R2NET: Storage and Analysis of Attack Behavior Patterns

Vol. 17, No. 2, February 28, 2023
10.3837/tiis.2023.02.001, Download Paper (Free):

Abstract

Cloud computing has evolved significantly, intending to provide users with fast, dependable, and low-cost services. With its development, malicious users have become increasingly capable of attacking both its internal and external security. To ensure the security of cloud services, encryption, authorization, firewalls, and intrusion detection systems have been employed. However, these single monitoring agents, are complex, time-consuming, and they do not detect ransomware and zero-day vulnerabilities on their own. An innovative Record and Replay-based hybrid Honeynet (R2NET) system has been developed to address this issue. Combining honeynet with Record and Replay (RR) technology, the system allows fine-grained analysis by delaying time-consuming analysis to the replay step. In addition, a machine learning algorithm is utilized to cluster the logs of attackers and store them in a database. So, the accessing time for analyzing the attack may be reduced which in turn increases the efficiency of the proposed framework. The R2NET framework is compared with existing methods such as EEHH net, HoneyDoc, Honeynet system, and AHDS. The proposed system achieves 7.60%, 9.78%%, 18.47%, and 31.52% more accuracy than EEHH net, HoneyDoc, Honeynet system, and AHDS methods.


Statistics

Show / Hide Statistics

Statistics (Cumulative Counts from December 1st, 2015)
Multiple requests among the same browser session are counted as one view.
If you mouse over a chart, the values of data points will be shown.


Cite this article

[IEEE Style]
M. R. Amal and P. Venkadesh, "R2NET: Storage and Analysis of Attack Behavior Patterns," KSII Transactions on Internet and Information Systems, vol. 17, no. 2, pp. 295-311, 2023. DOI: 10.3837/tiis.2023.02.001.

[ACM Style]
M. R. Amal and P. Venkadesh. 2023. R2NET: Storage and Analysis of Attack Behavior Patterns. KSII Transactions on Internet and Information Systems, 17, 2, (2023), 295-311. DOI: 10.3837/tiis.2023.02.001.

[BibTeX Style]
@article{tiis:38387, title="R2NET: Storage and Analysis of Attack Behavior Patterns", author="M. R. Amal and P. Venkadesh and ", journal="KSII Transactions on Internet and Information Systems", DOI={10.3837/tiis.2023.02.001}, volume={17}, number={2}, year="2023", month={February}, pages={295-311}}