首页> 外文OA文献 >Classification Trees as a Technique for Creating Anomaly-Based Intrusion Detection Systems
【2h】

Classification Trees as a Technique for Creating Anomaly-Based Intrusion Detection Systems

机译:分类树作为一种创建基于异常的入侵检测系统的技术

摘要

Intrusion detection is a critical component of security information systems. The intrusion detection process attempts to detect maliciousattacks by examining various data collected during processes on the protected system. This paper examines the anomaly-based intrusion detectionbased on sequences of system calls. The point is to construct a model thatdescribes normal or acceptable system activity using the classification treesapproach. The created database is utilized as a basis for distinguishing theintrusive activity from the legal one using string metric algorithms. Themajor results of the implemented simulation experiments are presented anddiscussed as well.
机译:入侵检测是安全信息系统的重要组成部分。入侵检测过程试图通过检查在受保护系统上的过程中收集的各种数据来检测恶意攻击。本文研究了基于系统调用序列的基于异常的入侵检测。关键是要使用分类树方法构建一个描述正常或可接受的系统活动的模型。使用创建的数据库作为基础,使用字符串度量算法将侵入性活动与合法活动区分开。给出并讨论了实现的仿真实验的主要结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号