Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
A Distributed System for Early Intrusion Detection and Assessment of Cybersecurity
Igor Sikorsky Kyiv Polytechnic Institute, Ukraine.
Igor Sikorsky Kyiv Polytechnic Institute, Ukraine.
Blekinge Institute of Technology, Faculty of Computing, Department of Computer Science.ORCID iD: 0000-0001-5629-5205
Florida International University, USA.
2025 (English)In: Blockchain - Pioneering the Web3 Infrastructure for an Intelligent Future / [ed] Luyao Zhang, Mark Esposito, Terence Tse, IntechOpen , 2025Chapter in book (Other academic)
Abstract [en]

Centralized intrusion detection and prevention systems (IDS/IPS) and Security Information Event Management (SIEM) systems often fail to analyze and respond to information and cybersecurity threats that occur in distributed and heavily loaded environments due to computational, storage, and license limitations. In this chapter, we propose a novel distributed hierarchical system concept for early intrusion detection and subsequent assessment of cyber and information security risks based on anomalous behavior analysis without using predefined patterns. The developed approach aims to increase the security of distributed systems against decentralized attacks including both DDoS and non-specific, non-DDoS attacks, such as advanced persistent threats (APT) conducted by high-skilled cybercrimes and state-sponsored adversaries. We expect the proposed concept to improve the performance of SIEM systems compared to centralized solutions. The increasing productivity effectiveness indicator depends on the possible number of hierarchy levels in the analyzed systems (the possibility of their decomposition into subsystems).

Place, publisher, year, edition, pages
IntechOpen , 2025.
Keywords [en]
Blockchain, intrusion detection, SIEM, anomaly detection, threat intelligence, IoC
National Category
Computer Sciences
Identifiers
URN: urn:nbn:se:bth-27425DOI: 10.5772/intechopen.1007155ISBN: 9780854667000 (print)OAI: oai:DiVA.org:bth-27425DiVA, id: diva2:1934007
Available from: 2025-02-03 Created: 2025-02-03 Last updated: 2025-09-30Bibliographically approved

Open Access in DiVA

No full text in DiVA

Other links

Publisher's full text

Authority records

Baranovskyi, Oleksii

Search in DiVA

By author/editor
Baranovskyi, Oleksii
By organisation
Department of Computer Science
Computer Sciences

Search outside of DiVA

GoogleGoogle Scholar

doi
isbn
urn-nbn

Altmetric score

doi
isbn
urn-nbn
Total: 130 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf