论文部分内容阅读
在网络安全的防范体系中,防火墙和IDS是最典型的两个产品,它们使用广范,在黑客入侵防范方面起到了显著的作用。但是,随着黑客技术水平的提高,防火墙和IDS的缺陷与不足也逐渐表现出来,黑客可以利用防火墙的漏洞或其他方法来绕过防火墙,还可以通过变形攻击来躲避IDS检测、用巧妙的方法来避免攻击通路被IDS阻断。 IFS(Intrusion Forensic System入侵取证系统)的出现有助于这种情况的解决。当我们不能防止每一个黑客入侵时,我们就取得黑客的犯罪证据并且将之告上法庭,对其他有同样想法的黑客起到威慑作用。
In the network security prevention system, firewalls and IDS are the two most typical products, they use a wide range of hacker intrusion prevention played a significant role. However, with the improvement of hacking skills, the flaws and weaknesses of firewalls and IDSs are gradually manifested. Hackers can exploit firewall flaws or other methods to bypass firewalls. They can also evade IDS detection through deformation attacks. In a clever way To prevent the attack path blocked by IDS. IFS (Intrusion Forensic System intrusion forensic system) appears to help solve this situation. When we can not prevent every hacker from invading, we get the criminal evidence of hackers and bring it to court to deter other hackers who share the same view.