摘要
协同入侵检测技术(collaborative intrusion detection system,CIDS)能够检测分布式协同攻击,应对大规模网络入侵,拥有传统入侵检测系统所不具备的优势,而如何在提高检测性能的同时实现去中心化是一个重要的研究课题。通过对近年来CIDS研究成果的梳理,阐述了在检测方法、数据聚合、隐私保护和信任管理方面的研究进展和问题,分析了在去中心化方面面临的挑战,探讨了基于区块链技术的CIDS未来发展方向,最后展望了CIDS在云计算、物联网等新兴领域的应用前景。
Collaborative intrusion detection system(CIDS)can detect distributed cooperative attacks and deal with large-scale network intrusion.It has the advantages that traditional intrusion detection systems do not have.How to improve the detection performance while achieving decentralization is an important research topic.Through reviewing the research achievements of CIDS in recent years,this paper expounded the research progress and problems in detection methods,data aggregation,privacy protection and trust management,analyzed the challenges faced in decentralization,discussed the future development direction of CIDS based on blockchain technology.Finally this paper looked forward to the application prospects of CIDS in cloud computing,the Internet of Things and other emerging fields.
作者
汪永好
李志成
田雨禾
董子超
Wang Yonghao;Li Zhicheng;Tian Yuhe;Dong Zichao(Dept.of Cyberspace Security,Beijing Electronic Science&Technology Institute,Beijing 100070,China)
出处
《计算机应用研究》
CSCD
北大核心
2023年第6期1614-1620,1647,共8页
Application Research of Computers
关键词
入侵检测
协同入侵检测
深度学习
联邦学习
区块链技术
intrusion detection
collaborative intrusion detection
deep learning
federal learning
blockchain technology