Efficient and Privacy-Preserving Collaborative Intrusion Detection Using Additive Secret Sharing and Differential Privacy

dc.contributor.authorMokry, Laylon
dc.contributor.authorSlife, Paul
dc.contributor.authorBishop, Patrick
dc.contributor.authorQuiroz, Jose
dc.contributor.authorGuzzi, Cooper
dc.contributor.authorChen, Zhiyuan
dc.contributor.authorCrainiceanu, Adina
dc.contributor.authorNeedham, Don
dc.date.accessioned2022-02-07T14:40:29Z
dc.date.available2022-02-07T14:40:29Z
dc.date.issued2022-01-13
dc.description2021 IEEE International Conference on Big Data (Big Data)en_US
dc.description.abstractIntrusion Detection Systems are commonly used by organizations to monitor network traffic and detect attacks or suspicious behaviours. However, many attacks occur across organizations and are often difficult to detect using any single IDS. Collaborative Intrusion Detection Systems could lead to more accurate prediction and detection of cyber threats as well as a reduction of security administrators’ workload as similar threats from different places can be merged. However, most organizations are unwilling to disclose sensitive information about their internal network topology and traffic, lending these systems unusable. Existing solutions using homomorphic encryption and secure multi-party computation are often expensive. In this paper, we propose efficient and privacy preserving techniques to correlate alerts generated at different organizations. We propose skPrototypes, a distributed clustering algorithm for horizontally partitioned mixed data using additive secret sharing. This algorithm can be used to create a privacy preserving, collaborative intrusion detection system. We also propose dpkPrototypes which uses differential privacy on categorical attributes and is more efficient than skPrototypes for categorical attributes with many distinct values. Theoretical and experimental results validate the effectiveness of our algorithms.en_US
dc.description.sponsorshipThis work was partially supported by Office of Naval Research grant# N00014-18-1-2452.en_US
dc.description.urihttps://ieeexplore.ieee.org/abstract/document/9671428/en_US
dc.format.extent10 pagesen_US
dc.genreconference papers and proceedingsen_US
dc.identifierdoi:10.13016/m29j64-grxx
dc.identifier.citationL. Mokry et al., "Efficient and Privacy-Preserving Collaborative Intrusion Detection Using Additive Secret Sharing and Differential Privacy," 2021 IEEE International Conference on Big Data (Big Data), 2021, pp. 3324-3333, doi: 10.1109/BigData52589.2021.9671428.en_US
dc.identifier.urihttps://doi.org/10.1109/BigData52589.2021.9671428
dc.identifier.urihttp://hdl.handle.net/11603/24121
dc.language.isoen_USen_US
dc.publisherIEEEen_US
dc.relation.isAvailableAtThe University of Maryland, Baltimore County (UMBC)
dc.relation.ispartofUMBC Information Systems Department Collection
dc.relation.ispartofUMBC Faculty Collection
dc.rightsThis work was written as part of one of the author's official duties as an Employee of the United States Government and is therefore a work of the United States Government. In accordance with 17 U.S.C. 105, no copyright protection is available for such works under U.S. Law.en_US
dc.rightsPublic Domain Mark 1.0*
dc.rights.urihttp://creativecommons.org/publicdomain/mark/1.0/*
dc.titleEfficient and Privacy-Preserving Collaborative Intrusion Detection Using Additive Secret Sharing and Differential Privacyen_US
dc.typeTexten_US
dcterms.creatorhttps://orcid.org/0000-0002-6984-7248en_US

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
Efficient_and_Privacy-Preserving_Collaborative_Intrusion_Detection_Using_Additive_Secret_Sharing_and_Differential_Privacy.pdf
Size:
1.06 MB
Format:
Adobe Portable Document Format
Description:

License bundle

Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
2.56 KB
Format:
Item-specific license agreed upon to submission
Description: