메뉴 건너뛰기




Volumn , Issue , 2008, Pages 377-381

Intrusion alert correlation based on D-S evidence theory

Author keywords

Alert correlation; D S evidence theory; Intrsion detection system; Network security

Indexed keywords

ALERT CORRELATION; EVIDENCE THEORY; INTRUSION DETECTION SYSTEMS;

EID: 43949119446     PISSN: None     EISSN: None     Source Type: Conference Proceeding    
DOI: 10.1109/CHINACOM.2007.4469406     Document Type: Conference Paper
Times cited : (8)

References (20)
  • 1
    • 0003907293 scopus 로고    scopus 로고
    • Indianapolis: Macmillan Technology Publishing
    • R. Bace, Intrusion detection. Indianapolis: Macmillan Technology Publishing, 2000.
    • (2000) Intrusion detection
    • Bace, R.1
  • 3
    • 10444286030 scopus 로고    scopus 로고
    • Correlation analysis for distributed intrusion alert
    • J. Li and Z. Li, "Correlation analysis for distributed intrusion alert," Journal of Computer Research and Development, vol. 41, pp. 1919-1923, 2004.
    • (2004) Journal of Computer Research and Development , vol.41 , pp. 1919-1923
    • Li, J.1    Li, Z.2
  • 10
    • 3142623031 scopus 로고    scopus 로고
    • Clustering intrusion detection alarms to support root cause analysis
    • K. Julisch, "Clustering intrusion detection alarms to support root cause analysis," ACM Trans. on Information and System Security, vol. 4, no. 6, pp. 443-471, 2003.
    • (2003) ACM Trans. on Information and System Security , vol.4 , Issue.6 , pp. 443-471
    • Julisch, K.1
  • 12
    • 84949215209 scopus 로고    scopus 로고
    • Mining alarm clusters to improve alarm handling efficiency
    • New Orleans, pp
    • K. Julisch, "Mining alarm clusters to improve alarm handling efficiency," In 17th Annual Computer Security Applications Conference. New Orleans, pp. 12-21, 2001.
    • (2001) 17th Annual Computer Security Applications Conference , pp. 12-21
    • Julisch, K.1
  • 13
    • 0000516376 scopus 로고
    • Upper and lower probabilities induced by multivalued mapping
    • A. Dempster, "Upper and lower probabilities induced by multivalued mapping," Annals of Mathematical Statistics, vol. 38, no. 2, pp. 325-339, 1967.
    • (1967) Annals of Mathematical Statistics , vol.38 , Issue.2 , pp. 325-339
    • Dempster, A.1
  • 14
    • 33646754276 scopus 로고    scopus 로고
    • A network anomaly detector based on the D-S evidence theory
    • J. Zhuge, D. Wang, Y. Chen, Z. Ye, and W. Zou, "A network anomaly detector based on the D-S evidence theory," Journal of Software, vol. 17, no. 3, pp.463-471, 2006.
    • (2006) Journal of Software , vol.17 , Issue.3 , pp. 463-471
    • Zhuge, J.1    Wang, D.2    Chen, Y.3    Ye, Z.4    Zou, W.5
  • 16
    • 43949089420 scopus 로고    scopus 로고
    • D.Cuiry and Hervé Debar, Intrusion detection message exchange format data model and extensible markup language (xml) document type definition1 IETF. http://www.ietf.org/lid-abstracts.html, 2003.
    • D.Cuiry and Hervé Debar, Intrusion detection message exchange format data model and extensible markup language (xml) document type definition1 IETF. http://www.ietf.org/lid-abstracts.html, 2003.
  • 17
    • 27644509863 scopus 로고    scopus 로고
    • DARPA intrusion detection scenario specific dataset
    • 07
    • MIT Lincoln Lab, 2000 DARPA intrusion detection scenario specific dataset. http://www.ll.mit.edu/IST/ideval/data/2000/2000_data_index.html, 2003. 07.
    • (2000)
  • 18
    • 43949119726 scopus 로고    scopus 로고
    • ISS, Inc.: RealSecure intrusion detection system. http://www.iss.net.
    • ISS, Inc.: RealSecure intrusion detection system. http://www.iss.net.
  • 20
    • 21144446778 scopus 로고    scopus 로고
    • A multi-feature correlation redundance elimination of intrusion event
    • J. Gong, H. Mei, Y. Ding, and D. Wei, "A multi-feature correlation redundance elimination of intrusion event," Journal of Southeast University, vol. 35, no. 3, pp. 366-371, 2005.
    • (2005) Journal of Southeast University , vol.35 , Issue.3 , pp. 366-371
    • Gong, J.1    Mei, H.2    Ding, Y.3    Wei, D.4


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.