Agent-Based Network Protection Against Malicious Code

  • Authors:
  • Martin Rehák;Michal Pěchouček;Jan Tožička;Magda Prokopová;David Medvigy;Jiří Novotný

  • Affiliations:
  • Center for Applied Cybernetics, Faculty of Electrical Engineering,;Department of Cybernetics, Faculty of Electrical Engineering, Czech Technical University in Prague Technická 2, 166 27 Prague, Czech Republic;Department of Cybernetics, Faculty of Electrical Engineering, Czech Technical University in Prague Technická 2, 166 27 Prague, Czech Republic;Center for Applied Cybernetics, Faculty of Electrical Engineering,;Department of Cybernetics, Faculty of Electrical Engineering, Czech Technical University in Prague Technická 2, 166 27 Prague, Czech Republic;Institute of Computer Science, Masaryk University, Botanická 68a, 602 00 Brno, Czech Republic

  • Venue:
  • CEEMAS '07 Proceedings of the 5th international Central and Eastern European conference on Multi-Agent Systems and Applications V
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

This paper presents an agent-based approach to Network Intrusion Prevention on corporate networks, emphasizing the protection from fast-spreading mobile malicious code outbreaks (e.g. worms) and related threats. Agents are not only used as a system-integration platform, but we use modern agent approaches to trust modeling and distributed task allocation to efficiently detect and also counter the attack by automatically created and deployed filters. The ability of the system to react autonomously, without direct human supervision, is crucial in countering the fast-spreading worms, that employ efficient scanning strategies to immediately spread farther once they infect a single host in the network.