A Unified Host-based Intrusion Detection Framework Using Spark in Cloud

Ming Liu,Zhi Xue,Xiangjian He
DOI: https://doi.org/10.1109/trustcom50675.2020.00026
2020-01-01
Abstract:The host-based intrusion detection system (HIDS) is an essential research domain of cybersecurity. HIDS examines log data of hosts to identify intrusive behaviors. The detection efficiency is a significant factor of HIDS. Traditionally, HIDS is often installed with a standalone mode. Training detection engines with a large amount of data on a single physical computer with limited computing resources may be time-consuming. Therefore, this paper offers a unified HIDS framework based on Spark and deployed in the Google cloud. The framework includes a unified machine learning pipeline to implement scalable and efficient HIDS.
What problem does this paper attempt to address?