An intelligent lightweight IDS, called host-based forensic intrusion detection system, developed with forensics,biometrics, data mining and watermark techniques, to detect the intrusion real-time, effectively and efficiently.
This paper presents an intelligent lightweight IDS, called host-based forensic intrusion detection system,which is developed with forensics,biometrics,data mining and watermark techniques.We use the forensics technique to profile the user behavior in order to automate the maintenance of user profile, data mining technique to find out the cooperative attack, and watermark technique to trace back the hackers or intruders. The goal of the system is to detect the intrusion real-time, effectively and efficiently.