메뉴 건너뛰기




Volumn 10, Issue 3, 2005, Pages 169-183

Data mining and machine learning - Towards reducing false positives in intrusion detection

Author keywords

[No Author keywords available]

Indexed keywords

ALERT-MANAGEMENT SYSTEM; INTRUSION DETECTION SYSTEMS (IDSS);

EID: 27644590551     PISSN: 13634127     EISSN: None     Source Type: Journal    
DOI: 10.1016/j.istr.2005.07.001     Document Type: Article
Times cited : (99)

References (44)
  • 10
    • 84861257282 scopus 로고    scopus 로고
    • Aggregation and correlation of intrusion-detection alerts. Recent advances in intrusion detection (RAID2001)
    • Springer-Verlag
    • Hervé Debar, and Andreas Wespi Aggregation and correlation of intrusion-detection alerts Recent advances in intrusion detection (RAID2001) Lecture notes in computer science vol. 2212 2001 Springer-Verlag p. 85-103
    • (2001) Lecture Notes in Computer Science , vol.2212
    • Hervé, D.1    Andreas, W.2
  • 18
  • 21
    • 84861268875 scopus 로고
    • Inductive logic programming: Techniques and applications
    • Nada Lavrač, and Sašo Džeroski Inductive logic programming: techniques and applications Ellis Horwood 1994
    • (1994) Ellis Horwood
    • Nada, L.1    Sašo, D.2
  • 24
    • 84958970105 scopus 로고    scopus 로고
    • The effect of identifying vulnerabilities and patching software on the utility of network intrusion detection. Recent advances in intrusion detection (RAID2002)
    • Springer-Verlag
    • Richard Lippmann, Seth Webster, and Douglas Stetson The effect of identifying vulnerabilities and patching software on the utility of network intrusion detection Recent advances in intrusion detection (RAID2002) Lecture notes in computer science vol. 2516 2002 Springer-Verlag p. 307-26
    • (2002) Lecture Notes in Computer Science , vol.2516
    • Richard, L.1    Seth, W.2    Douglas, S.3
  • 25
    • 35248857893 scopus 로고    scopus 로고
    • An analysis of the 1999 DARPA/Lincoln laboratory evaluation data for network anomaly detection. Recent advances in intrusion detection (RAID2003)
    • Springer-Verlag
    • Matthew V. Mahoney, and Philip K. Chan An analysis of the 1999 DARPA/Lincoln laboratory evaluation data for network anomaly detection Recent advances in intrusion detection (RAID2003) Lecture notes in computer science vol. 2820 2003 Springer-Verlag p. 220-37
    • (2003) Lecture Notes in Computer Science , vol.2820
    • Mahoney Matthew, V.1    Chan Philip, K.2
  • 27
    • 84944239811 scopus 로고    scopus 로고
    • The 1998 lincoln laboratory IDS evaluation. A critique. Recent advances in intrusion detection (RAID2000)
    • Springer-Verlag
    • Johh McHugh The 1998 lincoln laboratory IDS evaluation. A critique Recent advances in intrusion detection (RAID2000) Lecture notes in computer science vol. 1907 2000 Springer-Verlag p. 145-61
    • (2000) Lecture Notes in Computer Science , vol.1907
    • Johh, M.1
  • 29
    • 77956988169 scopus 로고    scopus 로고
    • M2D2: A formal data model for IDS alert correlation. Recent advances in intrusion detection (RAID2002)
    • Springer-Verlag
    • Benjamin Morin, Ludovic Mé, Hervé Debar, and Mireille Ducasse M2D2: a formal data model for IDS alert correlation Recent advances in intrusion detection (RAID2002) Lecture notes in computer science vol. 2516 2002 Springer-Verlag p. 115-37
    • (2002) Lecture Notes in Computer Science , vol.2516
    • Benjamin, M.1    Ludovic, M.2    Hervé, D.3    Mireille, D.4
  • 32
    • 27644477624 scopus 로고    scopus 로고
    • Analyzing intrusion alerts via correlation. Recent advances in intrusion detection (RAID2002)
    • Springer-Verlag
    • Peng Ning, Yun Cui, and Douglas S. Reeves Analyzing intrusion alerts via correlation Recent advances in intrusion detection (RAID2002) Lecture notes in computer science vol. 2516 2002 Springer-Verlag
    • (2002) Lecture Notes in Computer Science , vol.2516
    • Peng, N.1    Yun, C.2    Reeves Douglas, S.3
  • 34
    • 27644589395 scopus 로고    scopus 로고
    • NIST ICAT metabase Web page at 2000-2004
    • (2000) ICAT Metabase
  • 35
    • 0033295259 scopus 로고    scopus 로고
    • Bro: A system for detecting network intruders in real-time
    • Vern Paxson Bro: a system for detecting network intruders in real-time Computer Networks 31 23-24 1999 2435 2463
    • (1999) Computer Networks , vol.31 , Issue.23-24 , pp. 2435-2463
    • Vern, P.1
  • 36
    • 27644490433 scopus 로고    scopus 로고
    • Using adaptive alert classification to reduce false positives in intrusion detection. Recent advances in intrusion detection (RAID2004)
    • Springer-Verlag Sophia Antipolis, France
    • Tadeusz Pietraszek Using adaptive alert classification to reduce false positives in intrusion detection Recent advances in intrusion detection (RAID2004) Lecture notes in computer science vol. 3324 2004 Springer-Verlag Sophia Antipolis, France 102-24
    • (2004) Lecture Notes in Computer Science , vol.3324
    • Tadeusz, P.1
  • 40
    • 84861258193 scopus 로고    scopus 로고
    • SecurityFocus BugTraq Web page at 1998-2004
    • (1998) BugTraq
  • 43
    • 84947759699 scopus 로고    scopus 로고
    • Inducing cost-sensitive trees via instance weighting. Proceedings of the second european symposium on principles of data mining and knowledge discovery
    • Springer-Verlag
    • Kai Ming Ting Inducing cost-sensitive trees via instance weighting Proceedings of the second european symposium on principles of data mining and knowledge discovery Lecture notes in AI vol. 1510 1998 Springer-Verlag 139 147
    • (1998) Lecture Notes in AI , vol.1510 , pp. 139-147
    • Kai Ming, T.1
  • 44
    • 0037952266 scopus 로고    scopus 로고
    • Probabilistic alert correlation. Recent advances in intrusion detection (RAID2001)
    • Springer-Verlag
    • Alfonso Valdes, and Keith Skinner Probabilistic alert correlation Recent advances in intrusion detection (RAID2001) Lecture notes in computer science vol. 2212 2001 Springer-Verlag 54-68
    • (2001) Lecture Notes in Computer Science , vol.2212
    • Alfonso, V.1    Keith, S.2


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.