Monitoring and evaluating open wireless LAN using hybrid IDS / Mohd Mirza Abdul Malik, Mohd Nizam Osman and Mushahadah Maghribi

Abdul Malik, Mohd Mirza and Osman, Mohd Nizam and Maghribi, Mushahadah (2019) Monitoring and evaluating open wireless LAN using hybrid IDS / Mohd Mirza Abdul Malik, Mohd Nizam Osman and Mushahadah Maghribi. Journal of Computing Research and Innovation (JCRINN), 4 (2): 7. pp. 60-67. ISSN 2600-8793

Abstract

In this ever-growing wireless technology era, the number of Open Wireless Local Area Network (WLAN) are on the rise. From cafes to shopping areas, most of them offer users with a free-to-use WLAN which popularly known as Open Wi-Fi or Wi-Fi Hotspots. Although it is a convenient for them to access the Internet at these places, later they know it also makes them a vulnerable target for attackers that might be lurking in the same network they are connected. Therefore, a Hybrid IDS that combines both SNORT, a network-based IDS (NIDS) and OSSEC, a host-based IDS (HIDS) was developed to curb the problem. NIDS was used to monitor network traffics while HIDS monitor user’s system for any suspicious activities. Then, a system that can control and manage both IDS in the much easier and simpler way was developed using Python programming language. The system then can generate alerts with the help of both IDS to notify users for any suspicious activities that might occur in the network or user’s system. Several attacks were launched from the attacker’s laptop to test whether Hybrid IDS can generate alerts to notify the victim. As a result, the system breeze through the testing phase by showing necessary output. All the results were taken and then compared with other scenarios to determine whether they can give the same results as Hybrid IDS. From the comparison results, it can be said that Hybrid IDS can give the extra protection layer towards Open Wi-Fi users. Therefore, the Hybrid IDS was proven to provide vast tracking detection for suspicious activity in the network environments by monitor and alert the users about malicious activities.

Metadata

Item Type: Article
Creators:
Creators
Email / ID Num.
Abdul Malik, Mohd Mirza
UNSPECIFIED
Osman, Mohd Nizam
UNSPECIFIED
Maghribi, Mushahadah
UNSPECIFIED
Subjects: Q Science > QA Mathematics > Instruments and machines > Electronic Computers. Computer Science > Computer software > Software protection
T Technology > TK Electrical engineering. Electronics. Nuclear engineering > Telecommunication > Wireless LANs
Divisions: Universiti Teknologi MARA, Perlis > Arau Campus
Journal or Publication Title: Journal of Computing Research and Innovation (JCRINN)
UiTM Journal Collections: UiTM Journal > Journal of Computing Research and Innovation (JCRINN)
ISSN: 2600-8793
Volume: 4
Number: 2
Page Range: pp. 60-67
Keywords: WLAN, IDS, hybrid IDS, SNORT, OSSEC
Date: 2019
URI: https://ir.uitm.edu.my/id/eprint/59908
Edit Item
Edit Item

Download

[thumbnail of 59908.pdf] Text
59908.pdf

Download (311kB)

ID Number

59908

Indexing

Statistic

Statistic details