Towards blockchain-based collaborative intrusion detection systems

Nikolaos Alexopoulos*, Emmanouil Vasilomanolakis, Natália Réka Ivánkó, Max Mühlhäuser

*Corresponding author for this work

Research output: Contribution to book/anthology/report/conference proceedingArticle in proceedingResearchpeer-review

62 Citations (Scopus)

Abstract

In an attempt to cope with the increased number of cyber-attacks, research in Intrusion Detection System IDSs is moving towards more collaborative mechanisms. Collaborative IDSs (CIDSs) are such an approach; they combine the knowledge of a plethora of monitors to generate a holistic picture of the monitored network. Despite the research done in this field, CIDSs still face a number of fundamental challenges, especially regarding maintaining trust among the collaborating parties. Recent advances in distributed ledger technologies, e.g. various implementations of blockchain protocols, are a good fit to the problem of enhancing trust in collaborative environments. This paper touches the intersection of CIDSs and blockchains. Particularly, it introduces the idea of utilizing blockchain technologies as a mechanism for improving CIDSs. We argue that certain properties of blockchains can be of significant benefit for CIDSs; namely for the improvement of trust between monitors, and for providing accountability and consensus. For this, we study the related work and highlight the research gaps and challenges towards such a task. Finally, we propose a generic architecture for the incorporation of blockchains into the field of CIDSs and an analysis of the design decisions that need to be made to implement such an architecture.

Original languageEnglish
Title of host publicationCritical Information Infrastructures Security - 12th International Conference, CRITIS 2017, Revised Selected Papers
EditorsGregorio D’Agostino, Antonio Scala
Number of pages12
PublisherSpringer
Publication date2018
Pages107-118
ISBN (Print)9783319998428
DOIs
Publication statusPublished - 2018
Externally publishedYes
Event12th International Conference on Critical Information Infrastructures Security, CRITIS 2017 - Lucca, Italy
Duration: 8 Oct 201713 Oct 2017

Conference

Conference12th International Conference on Critical Information Infrastructures Security, CRITIS 2017
Country/TerritoryItaly
CityLucca
Period08/10/201713/10/2017
SeriesLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Volume10707 LNCS
ISSN0302-9743

Bibliographical note

Funding Information:
This work has received funding from the European Union’s Horizon 2020 Research and Innovation Program, PROTECTIVE, under Grant Agreement No 700071. This work has also been funded by the DFG within the RTG 2050 “Privacy and Trust for Mobile Users” and within the CRC 1119 CROSSING.

Funding Information:
Acknowledgments. This work has received funding from the European Union’s Horizon 2020 Research and Innovation Program, PROTECTIVE, under Grant Agreement No 700071. This work has also been funded by the DFG within the RTG 2050 “Privacy and Trust for Mobile Users” and within the CRC 1119 CROSSING.

Publisher Copyright:
© Springer Nature Switzerland AG 2018.

Cite this