Kernel Framework for an Immune-Based Security System: A Work-In-Progress Report

  • Martim d’Orey Posser de Andrade Carbone UNICAMP
  • Paulo Lício de Geus UNICAMP


This report informs on the current status of the project whose goal is to design, implement and integrate into the 2.6 version of the Linux kernel a generic framework to support a computer security system inspired in the principles of the human immune system. A brief introduction to the project is given, followed by a more in-depth discussion of the framework requirements and its overall architecture. It concludes by pointing out the future research and development stages.


de Paula, F. S., de Castro, L. N., and de Geus, P. L. (2004). An Intrusion Detection System Using Ideas from the Immune System. In Proceedings of the IEEE Congress on Evolucionary Computation, Portland, Oregon, USA.

de Paula, F. S., dos Reis, M. A., de Assis Monteiro Fernandes, D., and de Geus, P. L. (2002). ADENOIDS: A Hybrid IDS Based on the Immune System. In Proceedings of the 9th International Conference on Neural Information Processing, Singapore.

Nagar, S., van Riel, R., Franke, H., Seetharaman, C., Kashyap, V., and Zheng, H. (2004). Improving linux resource control using CKRM. In Proceedings of the 2004 Ottawa Linux Symposium.

Russell, R. and Welte, H. (2002). Linux netfilter hacking HOWTO. Disponível em [link] (Junho de 2005).

Wright, C., Cowan, C., Smalley, S., Morris, J., and Kroah-Hartman, G. (2002). Linux Security Modules: General Security Support for the Linux Kernel. In Proceedings of the 11th USENIX Security Symposium.
CARBONE, Martim d’Orey Posser de Andrade; GEUS, Paulo Lício de. Kernel Framework for an Immune-Based Security System: A Work-In-Progress Report. In: SIMPÓSIO BRASILEIRO DE SEGURANÇA DA INFORMAÇÃO E DE SISTEMAS COMPUTACIONAIS (SBSEG), 5. , 2005, Florianópolis. Anais [...]. Porto Alegre: Sociedade Brasileira de Computação, 2005 . p. 245-248. DOI:


1 2 3 > >>