Security anomaly
Novel Intrusion Prevention and Detection Methods
White Paper Original methods and combined anomaly and signature IDS applications are presented in the paper. Analysis of contemporary Information Security Systems (ISS) and especially the case of Intrusion Detection... [20 Jun 2009]
Embedded Malware Detection Using Markov n-grams
White Paper This paper presents a novel anomaly detection scheme to detect embedded malware. Embedded malware is a recently discovered security threat that allows malcode to be hidden inside a benign file. It has... [20 Jun 2009]
A Multi-Layered Approach to the Design of Intelligent Intrusion Detection and Prevention System (IIDPS)
White Paper The approach introduced, a multi - layered approach, in which each layer harnesses both aspects of existing approach, signature and anomaly approaches, to achieve a better detection and prevention capabilities. [20 Jun 2009]
Anomaly Intrusion Detection System Using Hierarchical Gaussian Mixture Model
White Paper Anomaly-based approaches in Intrusion Detection Systems have the advantage of being able to detect unknown attacks; they look for patterns that deviate from the normal behavior. Intrusion Detection Systems have been... [20 Jun 2009]
Towards Real-Time Performance Monitoring for Encrypted Traffic
White Paper Network performance monitoring forms an essential component of critical IP network management functions such as troubleshooting, anomaly detection, and Service-Level-Agreement (SLA) compliance monitoring. [30 May 2009]
Rule-Based Anomaly Detection on IP Flows
White Paper Rule-based packet classification is a powerful method for identifying traffic anomalies, with network security as a key application area. While popular systems like Snort are used in many network locations, comprehensive... [29 May 2009]
Anomaly Based Intrusion Detection Based on the Junction Tree Algorithm
White Paper Intrusion detection is the process of monitoring the events occurring in a computer system or network and analyzing them for signs of possible incidents, which are violations or imminent threats of violation of computer... [20 Dec 2008]
An Integrated Network Security Approach: Pairing Detecting Malicious Patterns With Anomaly Detection
White Paper This paper reports on research in progress concerning the integration of different security techniques. A main purpose of the project is to integrate as many security functionality as possible into the... [04 Dec 2008]
Puppetnets: Misusing Web Browsers as a Distributed Attack Infrastructure
White Paper The paper explores the effectiveness of counter-measures including anomaly detection and more fine-grained browser security policies. Most of the recent work on Web security focuses on... [18 Nov 2008]
An Adaptively Evolving Intrusion Detection System Using Pattern Recognition Techniques
White Paper Conventional intrusion detection methods in the field of computer security are anomaly detection and misuse detection - the former suffers from high false alarm rates while the latter lacks... [14 Oct 2008]
Fuzzy Network Profiling for Intrusion Detection
White Paper The Fuzzy Intrusion Recognition Engine (FIRE) is an anomaly-based intrusion detection system that uses fuzzy logic to assess whether malicious activity is taking place on a network. It uses simple data mining techniques... [13 Oct 2008]
A Lightweight Online Network Anomaly Detection Scheme Based on Data Mining Methods
White Paper Anomaly detection applied to intrusion detection and computer security has been an active area of research since it was originally proposed by Denning in 1980s. Current anomaly detection... [01 Oct 2008]
Firewall Policy Advisor for Anomaly Discovery and Rule Editing
White Paper This paper present a set of techniques and algorithms that provide automatic discovery of firewall policy anomalies to reveal rule conflicts and potential problems in legacy firewalls, and anomaly-free policy editing for... [01 Oct 2008]
Bio-Inspired Mechanisms for Efficient and Adaptive Network Security
White Paper Based on the monitored data, statistical anomaly detection methods and policy-based filters can be employed. Off late, many efforts have been made in developing algorithms and methodologies for building efficient network... [18 Sep 2008]
Combining Visual and Automated Data Mining for Near-Real-Time Anomaly Detection and Analysis in BGP
White Paper The security of Internet routing is a major concern because attacks and errors can result in data packets not reaching their intended destination and/or falling into the wrong hands. A key step in improving routing... [18 Sep 2008]