메뉴 건너뛰기




Volumn 199, Issue , 2009, Pages 437-447

Adaptive alarm filtering by causal correlation consideration in intrusion detection

Author keywords

Adaptive learning; Alarm filtering; Ensemble; False alarm; Intrusion detection

Indexed keywords


EID: 65449128886     PISSN: 1860949X     EISSN: None     Source Type: Book Series    
DOI: 10.1007/978-3-642-00909-9_42     Document Type: Conference Paper
Times cited : (10)

References (13)
  • 2
    • 0141921552 scopus 로고    scopus 로고
    • Online ensemble learning: An empirical study
    • Fern, A., Givan, R.: Online ensemble learning: An empirical study. Machine Learning 53(1), 71-109 (2003)
    • (2003) Machine Learning , vol.53 , Issue.1 , pp. 71-109
    • Fern, A.1    Givan, R.2
  • 3
    • 3142623031 scopus 로고    scopus 로고
    • Clustering Intrusion Detection Alarms to Support Root Cause Analysis
    • Julisch, K.: Clustering Intrusion Detection Alarms to Support Root Cause Analysis. ACM Trans. on Information and System Security (TISSEC) 6(4), 443-471 (2003)
    • (2003) ACM Trans. on Information and System Security (TISSEC) , vol.6 , Issue.4 , pp. 443-471
    • Julisch, K.1
  • 5
    • 23944484457 scopus 로고    scopus 로고
    • Law, K.H., Kwok, L.F.: IDS False Alarm Filtering Using KNN Classifier. In: Lim, C.H., Yung, M. (eds.) WISA 2004. LNCS, 3325, pp. 114-121. Springer, Heidelberg (2005)
    • Law, K.H., Kwok, L.F.: IDS False Alarm Filtering Using KNN Classifier. In: Lim, C.H., Yung, M. (eds.) WISA 2004. LNCS, vol. 3325, pp. 114-121. Springer, Heidelberg (2005)
  • 7
    • 35248857893 scopus 로고    scopus 로고
    • Mahoney, M.V., Chan, P.K.: An Analysis of the 1999 DARPA/Lincoln Laboratory Evaluation Data for Network Anomaly Detection. In: Vigna, G., Krügel, C., Jonsson, E. (eds.) RAID 2003. LNCS, 2820, pp. 220-237. Springer, Heidelberg (2003)
    • Mahoney, M.V., Chan, P.K.: An Analysis of the 1999 DARPA/Lincoln Laboratory Evaluation Data for Network Anomaly Detection. In: Vigna, G., Krügel, C., Jonsson, E. (eds.) RAID 2003. LNCS, vol. 2820, pp. 220-237. Springer, Heidelberg (2003)
  • 9
    • 26444436687 scopus 로고    scopus 로고
    • Pietraszek, T.: Using adaptive alert classification to reduce false positives in intrusion detection. In: Jonsson, E., Valdes, A., Almgren, M. (eds.) RAID 2004. LNCS, 3224, pp. 102-124. Springer, Heidelberg (2004)
    • Pietraszek, T.: Using adaptive alert classification to reduce false positives in intrusion detection. In: Jonsson, E., Valdes, A., Almgren, M. (eds.) RAID 2004. LNCS, vol. 3224, pp. 102-124. Springer, Heidelberg (2004)
  • 10
    • 0032280519 scopus 로고    scopus 로고
    • Boosting the margins: A new explanation for the effectiveness of voting methods
    • Schapire, R., Freund, Y., Bartlett, P., Lee, W.S.: Boosting the margins: A new explanation for the effectiveness of voting methods. The Annals of Statistics 26(5), 1651-1686 (1998)
    • (1998) The Annals of Statistics , vol.26 , Issue.5 , pp. 1651-1686
    • Schapire, R.1    Freund, Y.2    Bartlett, P.3    Lee, W.S.4
  • 11
    • 0030126609 scopus 로고    scopus 로고
    • Learning in the presence of concept drift and hidden contexts
    • Widmer, G., Kubat, M.: Learning in the presence of concept drift and hidden contexts. Machine Learning 23(1), 69-101 (1996)
    • (1996) Machine Learning , vol.23 , Issue.1 , pp. 69-101
    • Widmer, G.1    Kubat, M.2


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.