找回密码
 To register

QQ登录

只需一步,快速开始

扫一扫,访问微社区

Titlebook: Recent Advances in Intrusion Detection; 5th International Sy Andreas Wespi,Giovanni Vigna,Luca Deri Conference proceedings 2002 Springer-Ve

[复制链接]
楼主: DEIGN
发表于 2025-3-25 03:56:49 | 显示全部楼层
Undermining an Anomaly-Based Intrusion Detection System Using Common Exploitssses of an anomaly-based intrusion detector, and shows how an attacker can manipulate common attacks to exploit those weaknesses. The paper explores the implications of this threat, and suggests possible improvements for existing and future anomaly-based intrusion detection systems.
发表于 2025-3-25 09:01:55 | 显示全部楼层
A Mission-Impact-Based Approach to INFOSEC Alarm Correlationact Intrusion Report Correlation System, or M-Correlator. M-Correlator is intended to provide analysts (at all experience levels) a powerful capability to automatically fuse together and isolate those INFOSEC alerts that represent the greatest threat to the health and security of their networks.
发表于 2025-3-25 12:41:34 | 显示全部楼层
M2D2: A Formal Data Model for IDS Alert Correlationsly specified using the formal definition of M2D2. As opposed to already published correlation methods, these examples use more than the events generated by security tools; they make use of many concepts formalized in M2D2.
发表于 2025-3-25 16:54:01 | 显示全部楼层
发表于 2025-3-25 23:01:41 | 显示全部楼层
发表于 2025-3-26 00:08:02 | 显示全部楼层
Performance Adaptation in Real-Time Intrusion Detection Systems and cost-benefit analysis. The back-end performs scenario (or trend) analysis to recognize on-going attack sequences, so that the predictions of the likely . attacks can be used to pro-actively and optimally configure the IDS.
发表于 2025-3-26 06:54:57 | 显示全部楼层
Detecting Malicious Software by Monitoring Anomalous Windows Registry Accessesdel is used to check each access to the registry in real time to determine whether or not the behavior is abnormal and (possibly) corresponds to an attack. The system is effective in detecting the actions of malicious software while maintaining a low rate of false alarms
发表于 2025-3-26 10:35:46 | 显示全部楼层
Introducing Reference Flow Control for Detecting Intrusion Symptoms at the OS Leveluence of another, in order to detect that kind of attacks. We propose a proof-of-concept application to a Unix system and show its ability to detect novel attack scenarii that seek the same intrusion goals.
发表于 2025-3-26 14:07:11 | 显示全部楼层
Detecting Long Connection Chains of Interactive Terminal Sessionsgy for detecting suspicious remote sessions, used as part of a long connection chain. Interactive terminal sessions behave differently on long chains than on direct connections. The time gap between a client request and the server delayed acknowledgment estimates the round-trip time to the nearest s
发表于 2025-3-26 19:35:12 | 显示全部楼层
Multiscale Stepping-Stone Detection: Detecting Pairs of Jittered Interactive Streams by Exploiting Mre is a growing literature on ways to detect that an interactive connection into a site and another outbound from the site give evidence of such a “stepping stone.” This has been done based on monitoring the access link connecting the site to the Internet (Eg. [.,., .]). The earliest work was based
 关于派博传思  派博传思旗下网站  友情链接
派博传思介绍 公司地理位置 论文服务流程 影响因子官网 SITEMAP 大讲堂 北京大学 Oxford Uni. Harvard Uni.
发展历史沿革 期刊点评 投稿经验总结 SCIENCEGARD IMPACTFACTOR 派博系数 清华大学 Yale Uni. Stanford Uni.
|Archiver|手机版|小黑屋| 派博传思国际 ( 京公网安备110108008328) GMT+8, 2025-6-18 10:03
Copyright © 2001-2015 派博传思   京公网安备110108008328 版权所有 All rights reserved
快速回复 返回顶部 返回列表