signature nidss
Elephant: Network Intrusion Detection Systems That Don't Forget
White Paper Because most NIDSs are signature-based, it is critical to update their rule-sets frequently; unfortunately, doing so can result in downtime that causes state to be lost, leading to vulnerabilities of attack misclassification. [30 Jun 2008]
Dynamic Protocol Analysis for Network Intrusion Detection Systems
White Paper Many Network Intrusion Detection Systems (NIDSs) perform application layer protocol analysis. This paper presents design and implementation of architecture for NIDSs which supports the integration of these advanced methods for dynamic protocol... [18 Jun 2008]
